← Back

Joomla

joomla

534 CVEs • 147 products

Products (147)

Click to collapse
Toggle
Joomla
joomla
Bsq Sitestats
bsq_sitestats
Rs Gallery2
rs_gallery2
Com Weblinks
com_weblinks
Jd Wiki
jd-wiki
Com Sef
com_sef
Com Downloads
com_downloads
Com Pcchess
com_pcchess
Com Astatspro
com_astatspro
Com Mailto
com_mailto
Pc Cookbook
pc_cookbook
Colophon
colophon
Lmo
lmo
Jim Component
jim_component
Jd Wordpress
jd-wordpress
Joomlalib
joomlalib
Com Events
com_events
Events Module
events_module
Sef4040x
sef4040x
Hot Properties
hot_properties
Com Mosmedia
com_mosmedia
Mosmedia
mosmedia
Car Manager
car_manager
Jambook
jambook
Expose
expose
Pony Gallery
pony_gallery
J Reactions
j_reactions
Bibtex
bibtex
Nice Talk
nice_talk
Rsfiles
rsfiles
Neorecruit
neorecruit
Eventlist
eventlist
Akobook
akobook
Joomla Radio
joomla_radio
Com Newsletter
com_newsletter
Com Mamml
com_mamml
Com Fq
com_fq
Glossary
glossary
Com Recipes
com_recipes
Com Jokes
com_jokes
Com Buslicense
com_buslicense
Com Awesom
com_awesom
Com Shambo2
com_shambo2
Com Sobi2
com_sobi2
Com Ynews
com_ynews
Com Noticias
com_noticias
Com Directory
com_directory
Com Gallery
com_gallery
Com Neogallery
com_neogallery
Com Iomezun
com_iomezun
Com Doc
com_doc
Com Comments
com_comments
Com Quiz
com_quiz
Com Mcquiz
com_mcquiz
Com Mediaslide
com_mediaslide
Com Mezun
com_mezun
Rapid Recipe
rapid_recipe
Com Galeria
com_galeria
Com Clasifier
com_clasifier
Com Profile
com_profile
Com Detail
com_detail
Com Salesrep
com_salesrep
Com Ewriting
com_ewriting
Com Acajoom
com_acajoom
Datsogallery
datsogallery

CVEs (534)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Joomla
1Joomla
Apr 23, 2026
Jul 18, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in Joomla! before 1.5.4 has unknown impact and attack vectors related to a "User Redirect Spam fix," possibly an open redirect vulnerability.
1Joomla
1Joomla
Apr 23, 2026
Jul 18, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The file caching implementation in Joomla! before 1.5.4 allows attackers to access cached pages via unknown attack vectors.
1Joomla
1Joomla
Apr 23, 2026
Jul 18, 2008
N/A· v4
N/A· v3
10.0 HIGH· v2
Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vectors related to a missing "LDAP security fix."
1Joomla
1Com Beamospetition
Apr 23, 2026
Jul 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the beamospetition (com_beamospetition) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the pet parameter to index.php.
2Brightcode
Joomla
2Brightcode Weblinks Module
Com Brightweblinks
Apr 23, 2026
Jul 9, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in Brightcode Weblinks (com_brightweblinks) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter.
2Joomla
Mambo
3Com Facileforms
Com FacileformsJoomla
Apr 23, 2026
Jul 2, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
PHP remote file inclusion vulnerability in facileforms.frame.php in the FacileForms (com_facileforms) component 1.4.4 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the ff_compat...Show more
PHP remote file inclusion vulnerability in facileforms.frame.php in the FacileForms (com_facileforms) component 1.4.4 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the ff_compath parameter.Show less
2Feellove
Joomla
2Com Expshop
Exp Shop Component
Apr 23, 2026
Jun 27, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the EXP Shop (com_expshop) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show_payment action to index.php.
1Joomla
1Com Gameq
Apr 23, 2026
Jun 13, 2008
N/A· v4
N/A· v3
6.8 MEDIUM· v2
SQL injection vulnerability in the GameQ (com_gameq) component 4.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a page action to index.php.
2Joomla
Rapid Source
2Com Rapidrecipe
Rapid Recipe
Apr 23, 2026
Jun 13, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to inde...Show more
SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php.Show less
1Joomla
1Com Yvcomment
Apr 23, 2026
Jun 13, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php...Show more
SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php.Show less
1Joomla
2Com News Portal
Joomla
Apr 23, 2026
Jun 12, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.
1Joomla
1Com Joobb
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Joomla! Bulletin Board (aka Joo!BB or com_joobb) component 0.5.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the forum parameter in a forum action to index...Show more
SQL injection vulnerability in the Joomla! Bulletin Board (aka Joo!BB or com_joobb) component 0.5.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the forum parameter in a forum action to index.php.Show less
1Joomla
1Com Biblestudy
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Bible Study (com_biblestudy) component before 6.0.7c for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a mediaplayer action to index.php.
1Joomla
2Com Joomradio
Joomla
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in the EXP JoomRadio (com_joomradio) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) show_radio or (2) show_video ac...Show more
Multiple SQL injection vulnerabilities in the EXP JoomRadio (com_joomradio) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) show_radio or (2) show_video action to index.php.Show less
1Joomla
2Com Acctexp
Joomla
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the acctexp (com_acctexp) component 0.12.x and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the usage parameter in a subscribe action to index.php.
1Joomla
1Com Jb2
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the JooBlog (com_jb2) component 0.1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the CategoryID parameter in a category action to index.php.
1Joomla
1Com Idoblog
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the IDoBlog (com_idoblog) component b24 and earlier and 1.0, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the userid parameter in a userblog action...Show more
SQL injection vulnerability in the IDoBlog (com_idoblog) component b24 and earlier and 1.0, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the userid parameter in a userblog action to index.php.Show less
1Joomla
1Easybook Component
Apr 23, 2026
Jun 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the EasyBook (com_easybook) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gbid parameter in a deleteentry action to index.php.
1Joomla
2Com Simpleshop
Joomla
Apr 23, 2026
Jun 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a browse action to index.p...Show more
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a browse action to index.php.Show less
1Joomla
2Com Jotloader
Joomla
Apr 23, 2026
Jun 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the JotLoader (com_jotloader) component 1.2.1.a and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php.