The MFA management features did not properly terminate existing user sessions when a user's MFA methods have been modified.
2024-02-29T01:44:03.627
2025-06-02T15:28:56.793
Analyzed
CVSSv3.1: 6.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | joomla | joomla\! | < 3.10.15 | Yes |
| Application | joomla | joomla\! | < 4.4.3 | Yes |
| Application | joomla | joomla\! | < 5.0.3 | Yes |