← Back

Convert Forms Project

convert_forms_project

4 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Convert Forms
convert_forms

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Convert Forms Project
1Convert Forms
Nov 13, 2025
Mar 5, 2025
N/A· v4
2.7 LOW· v3
N/A· v2
A SQL injection vulnerability in the Convert Forms component versions 1.0.0-1.0.0 - 4.4.9 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands in the submission management area in b...Show more
A SQL injection vulnerability in the Convert Forms component versions 1.0.0-1.0.0 - 4.4.9 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands in the submission management area in backend.Show less
1Convert Forms Project
1Convert Forms
Jun 4, 2025
Dec 4, 2024
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Reflected Cross site scripting vulnerability in Convert Forms component for Joomla in versions before 4.4.8.
1Convert Forms Project
1Convert Forms
Jun 4, 2025
Dec 4, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.8.
1Convert Forms Project
1Convert Forms
Nov 21, 2024
Apr 12, 2018
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
The Convert Forms extension before 2.0.4 for Joomla! is vulnerable to Remote Command Execution using CSV Injection that is mishandled when exporting a Leads file.