5.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Description
Improper handling of authentication requests lead to a user enumeration vector in the passkey authentication method.
Basic Information
ID
CVE-2025-54477
Source
Joomla
Published
Sep 30, 2025 at 16:02
Modified
Sep 30, 2025 at 17:43
Affected Product
Vendor
Joomla! Project
Product
Joomla! CMS
Version
4.0.0-4.4.13
Affected Versions
Joomla! Project Joomla! CMS 4.0.0-4.4.13
Joomla! Project Joomla! CMS 5.0.0-5.3.3
Joomla! Project Joomla! CMS 5.0.0-5.3.3