See how justjoomla compares to other vendors in security performance
PHP remote file inclusion vulnerability in admin.treeg.php in the Flash Tree Gallery (comtreeg) component 1.0 for Joomla!, when registerglobals is enabled, allows remote attackers to execute arbitrary PHP code via the mosConfiglivesite parameter.
PHP remote file inclusion vulnerability in admin.jjgallery.php in the Carousel Flash Image Gallery (comjjgallery) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfigabsolutepath parameter.