← Back

Joombooking

joombooking

2 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Jb Bus
jb_bus
Jb Visa
jb_visa

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Joombooking
1Jb Visa
Aug 19, 2026
Jun 19, 2026
8.8 HIGH· v4
8.2 HIGH· v3
N/A· v2
Joomla! Component JB Visa 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the visatype parameter. Attackers can send...Show more
Joomla! Component JB Visa 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the visatype parameter. Attackers can send GET requests to index.php with the option=com_bookpro and view=popup parameters, injecting SQL commands in the visatype parameter to extract sensitive database information including credentials and table contents.Show less
1Joombooking
1Jb Bus
Jun 17, 2026
Feb 17, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
SQL Injection exists in the JB Bus 2.3 component for Joomla! via the order_number parameter.