Filter
AND

JoomlaSQL Injection

First published (updated )

composer/joomla/joomla-cmsAn issue was discovered in Joomla! before 3.9.3. The phar:// stream wrapper can be used for object i…

First published (updated )

Joomla[20220303] - Core - User row are not bound to a authentication mechanism

First published (updated )

JoomlaCSRF

8.8
First published (updated )

JoomlaThe CMS installer in Joomla! before 3.7.4 does not verify a user's ownership of a webspace, which al…

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JoomlaInput Validation

8.8
First published (updated )

JoomlaUnspecified vulnerability in Joomla! 2.5.x before 2.5.5 allows remote attackers to gain privileges v…

7.5
First published (updated )

RSGallery2SQL Injection

7.5
First published (updated )

JoomlaSQL Injection

7.5
First published (updated )

JoomlaSQL Injection

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JoomlaJoomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to authenticate and byp…

7.5
First published (updated )

JoomlaJoomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to aut…

7.5
First published (updated )

Joomla[20201102] - Core - Disclosure of secrets in Global Configuration page

7.5
First published (updated )

Joomla[20201103] - Core - Path traversal in mod_random_image

7.5
First published (updated )

Joomla[20201101] - Core - com_finder ignores access levels on autosuggest

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Joomla[20210702] - Core - DoS through usergroup table manipulation

7.5
First published (updated )

Joomla[20210704] - Core - Privilege escalation through com_installer

7.5
First published (updated )

JoomlaIn Joomla! before 3.9.19, the default settings of the global textfilter configuration do not block H…

7.5
First published (updated )

JoomlaAn issue was discovered in Joomla! before 3.9.16. Various actions in com_templates lack the required…

7.5
First published (updated )

JoomlaInput Validation

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Joomla[20201106] - Core - CSRF in com_privacy emailexport feature

First published (updated )

JoomlaAn issue was discovered in Joomla! before 3.9.3. The "No Filtering" textfilter overrides child setti…

First published (updated )

JoomlaXSS

First published (updated )

JoomlaXSS

First published (updated )

JoomlaXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JoomlaXSS

First published (updated )

Joomla[20210303] - Core - XSS within alert messages showed to users

First published (updated )

Joomla[20210304] - Core - XSS within the feed parser library

First published (updated )

JoomlaXSS

First published (updated )

JoomlaXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203