CVE-2025-22213

Publication date

2025-03-11 16:07:28

Family

Joomla

State

PUBLISHED

Description

Inadequate checks in the Media Manager allowed users with "edit" privileges to change file extension to arbitrary extension, including .php and other potentially executable extensions.