VYPR

Vendor CVEs

Joomla

All CVEs

1,291 total · sorted by risk
  • CVE-2018-25330HigMay 17, 2026
    risk 0.53cvss 8.2epss 0.00

    Joomla! extension EkRishta 2.10 contains persistent cross-site scripting and SQL injection vulnerabilities that allow attackers to inject malicious code through profile fields and POST parameters. Attackers can inject script payloads in profile information fields like Address…

  • CVE-2020-37218HigMay 13, 2026
    risk 0.53cvss 8.2epss 0.00

    Joomla com_hdwplayer 4.2 contains an SQL injection vulnerability in the search.php file that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the hdwplayersearch parameter. Attackers can submit POST requests with crafted SQL…

  • CVE-2018-6397HigJan 30, 2018
    risk 0.53cvss 7.5epss 0.09

    Directory Traversal exists in the Picture Calendar 3.1.4 component for Joomla! via the list.php folder parameter.

  • CVE-2016-9838HigDec 16, 2016
    risk 0.53cvss 7.5epss 0.12

    An issue was discovered in components/com_users/models/registration.php in Joomla! before 3.6.5. Incorrect filtering of registration form data stored to the session on a validation error enables a user to gain access to a registered user's account and reset the user's group…

  • CVE-2012-1563HigJan 15, 2020
    risk 0.52cvss 7.5epss 0.09

    Joomla! before 2.5.3 allows Admin Account Creation.

  • CVE-2018-7317HigFeb 22, 2018
    risk 0.52cvss 7.5epss 0.06

    Backup Download exists in the Proclaim 9.1.1 component for Joomla! via a direct request for a .sql file under backup/.

  • CVE-2018-6610HigFeb 5, 2018
    risk 0.52cvss 7.5epss 0.06

    Information Leakage exists in the jLike 1.0 component for Joomla! via a task=getUserByCommentId request.

  • CVE-2026-23899HigApr 1, 2026
    risk 0.50cvss 8.8epss 0.00

    An improper access check allows unauthorized access to webservice endpoints.

  • CVE-2026-21630HigApr 1, 2026
    risk 0.50cvss 8.8epss 0.00

    Improperly built order clauses lead to a SQL injection vulnerability in the articles webservice endpoint.

  • CVE-2023-23752MedKEVFeb 16, 2023
    risk 0.50cvss 5.3epss 1.00

    An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

  • CVE-2019-9922HigMar 29, 2019
    risk 0.50cvss 7.5epss 0.11

    An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. Directory Traversal allows read access to arbitrary files.

  • CVE-2026-88853HigSep 14, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - regularlabs.com - Privileged stored XSS via event handler option in Modals Pro extension for Joomla < 17.0.0 - Modals Pro intentionally supports JavaScript Events such as on-open and on-closed. Affected versions do not distinguish trusted extension…

  • CVE-2026-88852HigSep 14, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - regularlabs.com - Privileged stored XSS via url option in Snippets Free extension for Joomla < 7.0.0, Snippets Pro extension for Joomla < 11.0.0 - Snippets substitutes variable values supplied by an article tag into saved Snippet content. The affected versions…

  • CVE-2026-85195HigSep 14, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - regularlabs.com - Privileged stored XSS via link option in Articles Anywhere extension for Joomla < 20.0.0 - Articles Anywhere accepts link options such as onclick and onmouseover. In affected versions, those options become real HTML event attributes without…

  • CVE-2026-85191HigSep 14, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - regularlabs.com - Privileged stored XSS via rtla-alias option in Tabs & Accordions extension for Joomla < 3.1.0 - Tabs & Accordions rewrites links matching an item alias into calls to its browser API. The affected renderer places the alias inside a quoted…

  • CVE-2026-85190HigSep 14, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - regularlabs.com - Privileged stored XSS via class option in Quick Index extension for Joomla < 5.0.5 - Quick Index inserts configurable class values into generated HTML without escaping them for an HTML attribute. A crafted value can close the intended class…

  • CVE-2026-85189HigSep 14, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - regularlabs.com - Privileged stored XSS via executable URL schemes in Modals extension for Joomla < 17.0.0 - Modals treats a destination using an executable browser URL scheme as an ordinary modal URL. The value can reach both the generated link and the…

  • CVE-2026-78071HigAug 28, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - digital-peak.com - Authenticated, privileged stored XSS in DP Calendar 7.0.0-8.19.5, 9.0.0-10.12.0 - Location title is rendered in data attribute without escaping leads to XSS, needs create permission in DPCalendar.

  • CVE-2026-77996HigAug 25, 2026
    risk 0.49cvss —epss 0.00

    Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41 - Lack of escaping in the location custom field lead to a XSS vector.

  • CVE-2026-75953HigAug 19, 2026
    risk 0.49cvss 7.5epss 0.00

    Joomla Extension - cmsjunkie.com - Open mail relay in J-BusinessDirectory < 6.2.3 - Recipient address was taken from the request (contact_id_offer / contact_id_event) instead of the server-side offer/event record, so mail could be sent to an arbitrary address.

  • CVE-2026-73337HigAug 18, 2026
    risk 0.49cvss 7.5epss 0.00

    Joomla! Core - [20260807] - MFA Authentication Bypass in Joomla 4.0.0-5.4.7 and 6.0.0-6.1.2 - Insufficient state checks lead to a vector that allows to bypass 2FA checks.

  • CVE-2026-65943HigJul 29, 2026
    risk 0.49cvss 7.5epss 0.00

    Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0

  • CVE-2023-54357HigJun 19, 2026
    risk 0.49cvss 7.5epss 0.00

    Joomla com_booking component 2.4.9 contains an information disclosure vulnerability that allows unauthenticated attackers to enumerate user accounts by exploiting the getUserData function in the customer controller. Attackers can send GET requests to index.php with…

  • CVE-2019-25762HigJun 19, 2026
    risk 0.49cvss 7.5epss 0.01

    Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive user data by exploiting the projects endpoint. Attackers can send requests to index.php with option=com_jpprojects&view=projects&tmpl=c…

  • CVE-2026-48901HigMay 26, 2026
    risk 0.49cvss 7.5epss 0.00

    The InputFilter::getInstance() method omitted a security sensitive parameter from the instance cache key.

  • CVE-2026-48897HigMay 26, 2026
    risk 0.49cvss 7.5epss 0.00

    Insufficient state checks lead to a vector that allows to bypass 2FA checks.

  • CVE-2026-48896HigMay 26, 2026
    risk 0.49cvss 7.5epss 0.00

    Insufficient state checks lead to a vector that allows to bypass 2FA checks.

  • CVE-2026-40384HigMay 26, 2026
    risk 0.49cvss 7.5epss 0.00

    An improper validation of the search parameter of the com_media files API endpoint leads to a path traversal vulnerability.

  • CVE-2020-37219HigMay 13, 2026
    risk 0.49cvss 7.5epss 0.01

    Joomla com_fabrik 3.9.11 contains a directory traversal vulnerability that allows unauthenticated attackers to list arbitrary files by manipulating the folder parameter. Attackers can send GET requests to the onAjax_files method with path traversal sequences to enumerate files…

  • CVE-2025-25227HigApr 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Insufficient state checks lead to a vector that allows to bypass 2FA checks.

  • CVE-2024-27187HigAug 20, 2024
    risk 0.49cvss 7.5epss 0.00

    Improper Access Controls allows backend users to overwrite their username when disallowed.

  • CVE-2023-40626HigNov 29, 2023
    risk 0.49cvss 7.5epss 0.01

    The language file parsing process could be manipulated to expose environment variables. Environment variables might contain sensible information.

  • CVE-2023-23755HigMay 30, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Joomla! 4.2.0 through 4.3.1. The lack of rate limiting allowed brute force attacks against MFA methods.

  • CVE-2023-23749HigJan 17, 2023
    risk 0.49cvss 7.5epss 0.01

    The 'LDAP Integration with Active Directory and OpenLDAP - NTLM & Kerberos Login' extension is vulnerable to LDAP Injection since is not properly sanitizing the 'username' POST parameter. An attacker can manipulate this paramter to dump arbitrary contents form the LDAP Database.

  • CVE-2022-23793HigMar 30, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 through 4.1.0. Extracting an specifilcy crafted tar package could write files outside of the intended path.

  • CVE-2021-26038HigJul 7, 2021
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Joomla! 2.5.0 through 3.9.27. Install action in com_installer lack the required hardcoded ACL checks for superusers. A default system is not affected cause the default ACL for com_installer is limited to super users already.

  • CVE-2021-26036HigJul 7, 2021
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Joomla! 2.5.0 through 3.9.27. Missing validation of input could lead to a broken usergroups table.

  • CVE-2010-1434HigJun 21, 2021
    risk 0.49cvss 7.5epss 0.01

    Joomla! Core is prone to a session fixation vulnerability. An attacker may leverage this issue to hijack an arbitrary session and gain access to sensitive information, which may help in launching further attacks. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and…

  • CVE-2010-1432HigJun 21, 2021
    risk 0.49cvss 7.5epss 0.01

    Joomla! Core is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.15 are vulnerable.

  • CVE-2021-23132HigMar 4, 2021
    risk 0.49cvss 7.5epss 0.07

    An issue was discovered in Joomla! 3.0.0 through 3.9.24. com_media allowed paths that are not intended for image uploads

  • CVE-2021-23131HigMar 4, 2021
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Joomla! 3.2.0 through 3.9.24. Missing input validation within the template manager.

  • CVE-2020-35616HigDec 28, 2020
    risk 0.49cvss 7.5epss 0.06

    An issue was discovered in Joomla! 1.7.0 through 3.9.22. Lack of input validation while handling ACL rulesets can cause write ACL violations.

  • CVE-2020-35612HigDec 28, 2020
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in Joomla! 2.5.0 through 3.9.22. The folder parameter of mod_random_image lacked input validation, leading to a path traversal vulnerability.

  • CVE-2020-35611HigDec 28, 2020
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Joomla! 2.5.0 through 3.9.22. The globlal configuration page does not remove secrets from the HTML output, disclosing the current values.

  • CVE-2020-35610HigDec 28, 2020
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Joomla! 2.5.0 through 3.9.22. The autosuggestion feature of com_finder did not respect the access level of the corresponding terms.

  • CVE-2020-19455HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    SQL injection exists in the jdownloads 3.2.63 component for Joomla! via components/com_jdownloads/helpers/categories.php, order function via the filter_order parameter.

  • CVE-2020-19451HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, updateLog function via the X-forwarded-for Header parameter.

  • CVE-2020-19450HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, getUserLimits function in the list parameter.

  • CVE-2020-19447HigSep 24, 2020
    risk 0.49cvss 7.5epss 0.01

    SQL injection exists in the jdownloads 3.2.63 component for Joomla! com_jdownloads/models/send.php via the f_marked_files_id parameter.

  • CVE-2020-13763HigJun 2, 2020
    risk 0.49cvss 7.5epss 0.01

    In Joomla! before 3.9.19, the default settings of the global textfilter configuration do not block HTML inputs for Guest users.

Page 6 of 26