An issue was discovered in Joomla! before 3.9.3. The "No Filtering" textfilter overrides child settings in the Global Configuration. This is intended behavior. However, it might be unexpected for the user because the configuration dialog lacks an additional message to explain this.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/107015 | Third Party Advisory VDB Entry |
https://developer.joomla.org/security-centre/767-20190203-core-additional-warning-in-the-global-configuration-textfilter-settings | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2019-02-12 18:29
Updated : 2020-08-24 17:37
NVD link : CVE-2019-7739
Mitre link : CVE-2019-7739
CVE.ORG link : CVE-2019-7739
JSON object : View
Products Affected
joomla
- joomla\!
CWE