[20201102] - Core - Disclosure of secrets in Global Configuration page
CVE-2020-35611
7.5HIGH
What is CVE-2020-35611?
An issue was discovered in Joomla! 2.5.0 through 3.9.22. The globlal configuration page does not remove secrets from the HTML output, disclosing the current values.
Affected Version(s)
Joomla! CMS 2.5.0-3.9.22