CISA orders feds to patch max severity Joomla plugin flaw by Friday
…The vulnerability is being actively exploited, working exploit code is public, and the attacks are automated, so a site with no public registration is not safe," it said . "One important point: updating…