Joomla! before 1.5.4 does not configure .htaccess to apply certain security checks that "block common exploits" to SEF URLs, which has unknown impact and remote attack vectors.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| joomla/joomla-platform(Packagist) | 0 | 1.5.4 | N/A |
CVSS Metrics