Description
An issue was discovered in Joomla! 2.5.0 through 3.9.27. CMS functions did not properly termine existing user sessions when a user's password was changed or the user was blocked.
Solution(s)
joomla-upgrade-3_9_28
Referenceshttps://attackerkb.com/topics/cve-2021-26037 CVE - 2021-26037 http://developer.joomla.org/security-centre/858-20210703-core-lack-of-enforced-session-termination.html