Unrated severityNVD Advisory· Published Jun 19, 2026
Joomla! Component JoomProject 1.1.3.2 Information Disclosure
CVE-2019-25762
Description
Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive user data by exploiting the projects endpoint. Attackers can send requests to index.php with option=com_jpprojects&view=projects&tmpl=component&format=json parameters to retrieve user IDs, names, and email addresses in JSON format.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: =1.1.3.2
Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/46121mitreexploit
- www.vulncheck.com/advisories/joomla-component-joomproject-information-disclosuremitrethird-party-advisory
- joomboost.commitreproduct
- extensions.joomla.org/extensions/extension/clients-a-communities/project-a-task-management/joomproject/mitreproduct
News mentions
1- Joomla!: 25 Component Vulnerabilities, Mostly SQLi, Disclosed in Single-Day BatchVypr Intelligence · Jun 19, 2026