Joomla! Core - [20260803] - Inconsistent ACL checks for mutating webservice endpoints in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An improper access check allows unauthorized users to perform mutation actions in webservice endpoints, where the same mutation was restricted in the backend UI.
{
"cpes": [
"cpe:2.3:a:joomla:joomla!:*:*:*:*:*:*:*:*"
],
"severity": "High"
}