VYPR
High severity8.8OSV Advisory· Published Mar 15, 2018· Updated Jun 17, 2026

CVE-2018-8045

CVE-2018-8045

Description

In Joomla! 3.5.0 through 3.8.5, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the User Notes list view.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Joomla/Joomla!OSV3 versions
    3.5.0, 3.5.1, 3.5.1-rc, …+ 2 more
    • (no CPE)range: 3.5.0, 3.5.1, 3.5.1-rc, …
    • cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*range: >=3.5.0,<=3.8.5
    • (no CPE)range: >=3.5.0 <=3.8.5

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.