Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-10262 | Insufficient state checks lead to a vector that allows to bypass 2FA checks. |
Github GHSA |
GHSA-6423-85cc-8gf6 | Joomla CMS Multi-Factor Authentication Bypass |
Wed, 04 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Joomla
Joomla joomla\! |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Joomla
Joomla joomla\! |
Tue, 08 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 08 Apr 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insufficient state checks lead to a vector that allows to bypass 2FA checks. | |
| Title | [20250402] - Joomla Core - MFA Authentication Bypass | |
| Weaknesses | CWE-287 | |
| References |
|
Status: PUBLISHED
Assigner: Joomla
Published:
Updated: 2025-04-21T07:16:35.672Z
Reserved: 2025-02-04T14:21:34.509Z
Link: CVE-2025-25227
Updated: 2025-04-08T18:55:00.559Z
Status : Analyzed
Published: 2025-04-08T17:15:35.610
Modified: 2025-06-04T20:49:45.233
Link: CVE-2025-25227
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA