HomeDefault status
unaffected
4.0.0-4.4.12
affected
5.0.0-5.2.5
affected
Description
Insufficient state checks lead to a vector that allows to bypass 2FA checks.
Problem types
CWE-287 Improper Authentication
Product status
4.0.0-4.4.12
5.0.0-5.2.5
References
developer.joomla.org/...-core-mfa-authentication-bypass.html