CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Smart Related Articles Project 1Smart Related Articles May 13, 2026 Apr 13, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The "Smart related articles" extension 1.1 for Joomla! has SQL injection in dialog.php (attacker must use search_cats variable in POST method to exploit this vulnerability). |
1Smart Related Articles Project 1Smart Related Articles May 13, 2026 Apr 13, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 The "Smart related articles" extension 1.1 for Joomla! does not prevent direct requests to dialog.php (there is a missing _JEXEC check). |
1Smart Related Articles Project 1Smart Related Articles May 13, 2026 Apr 13, 2017 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The "Smart related articles" extension 1.1 for Joomla! has XSS in dialog.php (n_art,type in GET Method). |