CVE-2025-22204: Extension - regularlabs.com - Remote code execution vulnerability in the Sourcerer extensions < 12.0.0 for Joomla
Published Feb 4, 2025
·Updated
Improper control of generation of code in the sourcerer extension for Joomla in versions before 11.0.0 lead to a remote code execution vulnerability.
Affected Software
3 affected components
Regular Labs Sourcerer<12.0.0
Joomla joomla<11.0.0
regularlabs Sourcerer Joomla\!<11.0.0
Event History
Feb 4, 2025
CVE Published
via MITRE·07:20 AM
Data Sourced
via MITRE·07:20 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-22204?
CVE-2025-22204 is classified as a critical vulnerability due to its potential for remote code execution.
2
Which versions are affected by CVE-2025-22204?
CVE-2025-22204 affects Regular Labs Sourcerer versions up to 12.0.0 and Joomla versions up to 11.0.0.
3
How do I fix CVE-2025-22204?
To fix CVE-2025-22204, upgrade Regular Labs Sourcerer to version 12.0.0 or later and Joomla to version 11.0.0 or later.
4
What is the impact of CVE-2025-22204?
The impact of CVE-2025-22204 is the potential for attackers to execute arbitrary code remotely on affected systems.
5
Who is the vendor associated with CVE-2025-22204?
The vendor associated with CVE-2025-22204 is Regular Labs, the developer of the Sourcerer extension.