CVE-2022-27912

MEDIUM

Joomla! 4.0.0-4.2.3 - Unauthorized Sensitive Information Exposure in Debug Mode

Title source: llm
STIX 2.1

Description

An issue was discovered in Joomla! 4.0.0 through 4.2.3. Sites with publicly enabled debug mode exposed data of previous requests.

Scores

CVSS v3 5.3
EPSS 0.0001
EPSS Percentile 0.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-200
Status published
Products (1)
joomla/joomla\! 4.0.0 - 4.2.3
Published Oct 25, 2022
Tracked Since Feb 18, 2026