VYPR

Vendor CVEs

Joomla

All CVEs

1,291 total · sorted by risk
  • CVE-2023-23753CriApr 23, 2023
    risk 0.64cvss 9.8epss 0.01

    The 'Visforms Base Package for Joomla 3' extension is vulnerable to SQL Injection as concatenation is used to construct an SQL Query. An attacker can interact with the database and could be able to read, modify and delete data on it.

  • CVE-2023-28731CriMar 30, 2023
    risk 0.64cvss 9.8epss 0.02

    AnyMailing Joomla Plugin is vulnerable to unauthenticated remote code execution, when being granted access to the campaign's creation on front-office due to unrestricted file upload allowing PHP code to be injected. This issue affects AnyMailing Joomla Plugin Enterprise…

  • CVE-2022-23797CriMar 30, 2022
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 through 4.1.0. Inadequate filtering on the selected Ids on an request could resulted into an possible SQL injection.

  • CVE-2022-23795CriMar 30, 2022
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 through 4.1.0. A user row was not bound to a specific authentication mechanism which could under very special circumstances allow an account takeover.

  • CVE-2010-1435CriJun 21, 2021
    risk 0.64cvss 9.8epss 0.01

    Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently retrieve password reset tokens from the database through an already existing SQL injection vector. Joomla! Core versions…

  • CVE-2010-1433CriJun 21, 2021
    risk 0.64cvss 9.8epss 0.01

    Joomla! Core is prone to a vulnerability that lets attackers upload arbitrary files because the application fails to properly verify user-supplied input. An attacker can exploit this vulnerability to upload arbitrary code and run it in the context of the webserver process. This…

  • CVE-2020-10243CriMar 16, 2020
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Joomla! before 3.9.16. The lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Featured Articles frontend menutype.

  • CVE-2019-19846CriDec 18, 2019
    risk 0.64cvss 9.8epss 0.02

    In Joomla! before 3.9.14, the lack of validation of configuration parameters used in SQL queries caused various SQL injection vectors.

  • CVE-2019-17399CriOct 9, 2019
    risk 0.64cvss 9.8epss 0.02

    The Shack Forms Pro extension before 4.0.32 for Joomla! allows path traversal via a file attachment.

  • CVE-2018-17386CriJun 19, 2019
    risk 0.64cvss 9.8epss 0.02

    SQL Injection exists in the Micro Deal Factory 2.4.0 component for Joomla! via the id parameter, or the PATH_INFO to mydeals/ or listdeals/.

  • CVE-2018-17381CriJun 19, 2019
    risk 0.64cvss 9.8epss 0.02

    SQL Injection exists in the Dutch Auction Factory 2.0.2 component for Joomla! via the filter_order_Dir or filter_order parameter.

  • CVE-2018-17399CriJun 19, 2019
    risk 0.64cvss 9.8epss 0.02

    SQL Injection exists in the Jimtawl 2.2.7 component for Joomla! via the id parameter.

  • CVE-2018-17398CriJun 19, 2019
    risk 0.64cvss 9.8epss 0.02

    SQL Injection exists in the AMGallery 1.2.3 component for Joomla! via the filter_category_id parameter.

  • CVE-2019-7743CriFeb 12, 2019
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Joomla! before 3.9.3. The phar:// stream wrapper can be used for objection injection attacks because there is no protection mechanism (such as the TYPO3 PHAR stream wrapper) to prevent use of the phar:// handler for non .phar-files.

  • CVE-2016-1000271CriFeb 4, 2019
    risk 0.64cvss 9.8epss 0.02

    Joomla extension DT Register version before 3.1.12 (Joomla 3.x) / 2.8.18 (Joomla 2.5) contains an SQL injection in "/index.php?controller=calendar&format=raw&cat[0]=SQLi&task=events". This attack appears to be exploitable if the attacker can reach the web server.

  • CVE-2017-18345CriAug 26, 2018
    risk 0.64cvss 9.8epss 0.02

    The Joomanager component through 2.0.0 for Joomla! has an arbitrary file download issue, resulting in exposing the credentials of the database via an index.php?option=com_joomanager&controller=details&task=download&path=configuration.php request.

  • CVE-2018-11325CriMay 22, 2018
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in Joomla! Core before 3.8.8. The web install application would autofill password fields after either a form validation error or navigating to a previous install step, and display the plaintext password for the administrator account at the confirmation…

  • CVE-2018-6376CriJan 30, 2018
    risk 0.64cvss 9.8epss 0.03

    In Joomla! before 3.8.4, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Hathor postinstall message.

  • CVE-2017-16634CriNov 10, 2017
    risk 0.64cvss 9.8epss 0.04

    In Joomla! before 3.8.2, a bug allowed third parties to bypass a user's 2-factor authentication method.

  • CVE-2017-15946CriOct 28, 2017
    risk 0.64cvss 9.8epss 0.01

    In the com_tag component 1.7.6 for Joomla!, a SQL injection vulnerability is located in the `tag` parameter to index.php. The request method to execute is GET.

  • CVE-2017-14596CriSep 20, 2017
    risk 0.64cvss 9.8epss 0.05

    In Joomla! before 3.8.0, inadequate escaping in the LDAP authentication plugin can result in a disclosure of a username and password.

  • CVE-2013-7429CriSep 14, 2017
    risk 0.64cvss 9.8epss 0.02

    The Googlemaps plugin before 3.1 for Joomla! allows remote attackers to conduct XML injection attacks via the url parameter to plugin_googlemap2_proxy.php.

  • CVE-2017-5215CriMay 17, 2017
    risk 0.64cvss 9.8epss 0.03

    The Codextrous B2J Contact (aka b2j_contact) extension before 2.1.13 for Joomla! allows a rename attack that bypasses a "safe file extension" protection mechanism, leading to remote code execution.

  • CVE-2016-9081CriJan 23, 2017
    risk 0.64cvss 9.8epss 0.02

    Joomla! 3.4.4 through 3.6.3 allows attackers to reset username, password, and user group assignments and possibly perform other user account modifications via unspecified vectors.

  • CVE-2016-10114CriJan 4, 2017
    risk 0.64cvss 9.8epss 0.02

    SQL injection vulnerability in the "aWeb Cart Watching System for Virtuemart" extension before 2.6.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via vectors involving categorysearch and smartSearch.

  • CVE-2016-9836CriDec 5, 2016
    risk 0.64cvss 9.8epss 0.02

    The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP file extensions when checking uploaded files for PHP content, which enables a user to upload and execute files with the `.php6`, `.php7`, `.phtml`, and `.phpt`…

  • CVE-2016-1000113CriOct 6, 2016
    risk 0.64cvss 9.8epss 0.03

    XSS and SQLi in huge IT gallery v1.1.5 for Joomla

  • CVE-2026-78069CriSep 3, 2026
    risk 0.62cvss —epss 0.00

    Joomla Extension - j2commerce.com - Missing authorization on Apps controller delegation chain in J2Store 1.0.0-3.3.21, 4.0.0-4.0.21, 4.1.0-4.1.6 - `J2StoreControllerApps`'s `appTask` delegation path instantiates app-plugin controllers with no ACL check anywhere in the code. It…

  • CVE-2026-77992CriAug 22, 2026
    risk 0.62cvss —epss 0.00

    Joomla Extension - fabrikar.com - heredoc terminator breakout in the calc element in Fabrik < 4.7.2 - The onUpdateComment endpoint did not perform any access checks.

  • CVE-2016-8870HigNov 4, 2016
    risk 0.62cvss 8.1epss 0.83

    The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before 3.6.4, when registration has been disabled, allows remote attackers to create user accounts by leveraging failure to check the Allow User Registration…

  • CVE-2026-85192CriSep 14, 2026
    risk 0.61cvss —epss 0.00

    Joomla Extension - regularlabs.com - Authenticated, privileged remote code execution in Conditional Content extension for Joomla < 8.0.0 - Conditional Content Pro accepts inline PHP Condition Rules in article syntax. In affected versions, the PHP is passed to the Conditions…

  • CVE-2026-77991CriAug 27, 2026
    risk 0.61cvss —epss 0.00

    Joomla Extension - joomlaeventmanager.net - Privileged remote code execution in Joomla Event Manager < 5.0.1 - The administrator source model allows to write dangerous file type incl. PHP, leading to remote code execution.

  • CVE-2026-63048CriJul 22, 2026
    risk 0.61cvss —epss 0.00

    Joomla Extension - joomlack.fr - Improper access control in Page Builder CK 1.0.0-3.1.2, 3.4.0-3.4.11, 3.5.0-3.6.2 - The Joomla extension Page Builder CK is vulnerable to an authenticated arbitrary file upload, leading to RCE.

  • CVE-2025-54299CriJul 28, 2025
    risk 0.61cvss —epss 0.00

    A stored XSS vulnerability in No Boss Testimonials component 1.0.0-3.0.0 and 4.0.0-4.0.2 for Joomla was discovered.

  • CVE-2025-54298CriJul 28, 2025
    risk 0.61cvss —epss 0.00

    A stored XSS vulnerability in CommentBox component 1.0.0-1.1.0 for Joomla was discovered.

  • CVE-2026-78082CriSep 10, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - joomshaper.com - Unauthenticated SQL Injection in Property Search and Map Filtering in SP Property < 4.1.4 - The property search and listing query builders assembled several WHERE and ORDER BY clauses (zipcode, sorting, price_range_dropdown, and…

  • CVE-2026-77994CriAug 24, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - joomlack.fr - Second order SQL injection in Page Builder CK < 3.6.5 - The Joomla extension Page Builder CK is vulnerable to a SQL injection issue related to the loadStyles method of the frontend page model.

  • CVE-2026-76571CriAug 22, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - fabrikar.com - Unauthenticated SQL injection in list filter condition parameter in Fabrik < 4.7.2 - The condition parameter passed to a list filter is concatenated verbatim into the WHERE clause built by getFilterQuery(). An unauthenticated attacker can supply…

  • CVE-2026-75954CriAug 19, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - cmsjunkie.com - SQL injection in trips search in J-BusinessDirectory < 6.2.3 - Search keywords and ORDER BY were concatenated into SQL. 6.2.3 quotes keywords and allow-lists the sort clause.

  • CVE-2026-74254CriAug 17, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5 - The Joomla extension Page Builder CK is vulnerable to a SQL injection issue related to the styles model. Version 3.6.4 fixed the vector in the frontend, 3.6.5 in the backend.

  • CVE-2026-74251CriAug 16, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 - The a[] (attribute) and s[] (specification) GET array parameters on Phoca Cart's public shop items page are concatenated raw into SQL WHERE clauses without…

  • CVE-2026-67285CriAug 12, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 - An unauthenticated attacker can perform includes to arbitrary PHP files that are accessible by the system.

  • CVE-2026-65876CriJul 27, 2026
    risk 0.60cvss —epss 0.00

    Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page Builder < 6.8.0 - Improper validation of catid parameters in the loadMoreArticles endpoint leads to an SQL injection vector.

  • CVE-2025-40636CriOct 3, 2025
    risk 0.60cvss —epss 0.00

    SQL injection vulnerability in Joomla module mod_vvisit_counter v2.0.4j3. This vulnerability allows an attacker to retrieve database content via the ‘cip_vvisitcounter’ cookie at all endpoints where the plugin counts visits.

  • CVE-2025-54294CriJul 23, 2025
    risk 0.60cvss —epss 0.00

    A SQLi vulnerability in Komento component 4.0.0-4.0.7for Joomla was discovered. The issue allows unprivileged users to execute arbitrary SQL commands.

  • CVE-2025-49484HigJul 18, 2025
    risk 0.60cvss —epss 0.04

    A SQL injection vulnerability in the JS Jobs plugin versions 1.0.0-1.4.1 for Joomla allows low-privilege users to execute arbitrary SQL commands via the 'cvid' parameter in the employee application feature.

  • CVE-2018-8045HigMar 15, 2018
    risk 0.60cvss 8.8epss 0.26

    In Joomla! 3.5.0 through 3.8.5, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the User Notes list view.

  • CVE-2018-6007HigJan 29, 2018
    risk 0.60cvss 8.8epss 0.02

    CSRF exists in the JS Support Ticket 1.1.0 component for Joomla! and allows attackers to inject HTML or edit a ticket.

  • CVE-2015-7715HigOct 18, 2017
    risk 0.60cvss 8.8epss 0.03

    Cross-site request forgery (CSRF) vulnerability in the Realtyna RPL (com_rpl) component before 8.9.5 for Joomla! allows remote attackers to hijack the authentication of administrators for requests that add a user via an add_user action to administrator/index.php.

  • CVE-2024-27185CriAug 20, 2024
    risk 0.59cvss 9.1epss 0.00

    The pagination class includes arbitrary parameters in links, leading to cache poisoning attack vectors.

Page 3 of 26