Filter
AND
-Infinity
0

JoomlaSQL Injection

First published (updated )

JoomlaIn Joomla! before 3.8.0, inadequate escaping in the LDAP authentication plugin can result in a discl…

First published (updated )

composer/joomla/joomla-cmsAn issue was discovered in Joomla! before 3.9.3. The phar:// stream wrapper can be used for object i…

First published (updated )

Joomla[20220303] - Core - User row are not bound to a authentication mechanism

First published (updated )

JoomlaCSRF

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JoomlaThe CMS installer in Joomla! before 3.7.4 does not verify a user's ownership of a webspace, which al…

8.8
First published (updated )

JoomlaInput Validation

8.8
First published (updated )

JoomlaUnspecified vulnerability in Joomla! 2.5.x before 2.5.5 allows remote attackers to gain privileges v…

7.5
First published (updated )

RSGallery2SQL Injection

7.5
First published (updated )

JoomlaSQL Injection

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JoomlaSQL Injection

7.5
First published (updated )

JoomlaJoomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to authenticate and byp…

7.5
First published (updated )

JoomlaJoomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to aut…

7.5
First published (updated )

JoomlaInput Validation

7.5
First published (updated )

JoomlaInfoleak

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Joomla[20201102] - Core - Disclosure of secrets in Global Configuration page

7.5
First published (updated )

Joomla[20201103] - Core - Path traversal in mod_random_image

7.5
First published (updated )

Joomla[20201101] - Core - com_finder ignores access levels on autosuggest

7.5
First published (updated )

Joomla[20210702] - Core - DoS through usergroup table manipulation

7.5
First published (updated )

Joomla[20210704] - Core - Privilege escalation through com_installer

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JoomlaIn Joomla! before 3.9.19, the default settings of the global textfilter configuration do not block H…

7.5
First published (updated )

JoomlaAn issue was discovered in Joomla! before 3.9.16. Various actions in com_templates lack the required…

7.5
First published (updated )

JoomlaInput Validation

First published (updated )

Joomla[20201106] - Core - CSRF in com_privacy emailexport feature

First published (updated )

JoomlaAn issue was discovered in Joomla! before 3.9.3. The "No Filtering" textfilter overrides child setti…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JoomlaXSS

First published (updated )

JoomlaXSS

First published (updated )

JoomlaXSS

First published (updated )

JoomlaXSS

First published (updated )

JoomlaXSS, Input Validation, CSRF

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203