High severity7.5NVD Advisory· Published Jun 19, 2026· Updated Aug 21, 2026
CVE-2019-25762
CVE-2019-25762
Description
Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive user data by exploiting the projects endpoint. Attackers can send requests to index.php with option=com_jpprojects&view=projects&tmpl=component&format=json parameters to retrieve user IDs, names, and email addresses in JSON format.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: =1.1.3.2
Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/46121nvdExploitVDB Entry
- www.vulncheck.com/advisories/joomla-component-joomproject-information-disclosurenvdThird Party Advisory
- joomboost.comnvdProduct
- extensions.joomla.org/extensions/extension/clients-a-communities/project-a-task-management/joomproject/nvdProduct
News mentions
1- Joomla!: 25 Component Vulnerabilities, Mostly SQLi, Disclosed in Single-Day BatchVypr Intelligence · Jun 19, 2026