← Back

Joomla

joomla

546 CVEs • 147 products

Products (147)

Click to collapse
Toggle
Joomla
joomla
Bsq Sitestats
bsq_sitestats
Rs Gallery2
rs_gallery2
Com Weblinks
com_weblinks
Jd Wiki
jd-wiki
Com Sef
com_sef
Com Downloads
com_downloads
Com Pcchess
com_pcchess
Com Astatspro
com_astatspro
Com Mailto
com_mailto
Pc Cookbook
pc_cookbook
Colophon
colophon
Lmo
lmo
Jim Component
jim_component
Jd Wordpress
jd-wordpress
Joomlalib
joomlalib
Com Events
com_events
Events Module
events_module
Sef4040x
sef4040x
Hot Properties
hot_properties
Com Mosmedia
com_mosmedia
Mosmedia
mosmedia
Car Manager
car_manager
Jambook
jambook
Expose
expose
Pony Gallery
pony_gallery
J Reactions
j_reactions
Bibtex
bibtex
Nice Talk
nice_talk
Rsfiles
rsfiles
Neorecruit
neorecruit
Eventlist
eventlist
Akobook
akobook
Joomla Radio
joomla_radio
Com Newsletter
com_newsletter
Com Mamml
com_mamml
Com Fq
com_fq
Glossary
glossary
Com Recipes
com_recipes
Com Jokes
com_jokes
Com Buslicense
com_buslicense
Com Awesom
com_awesom
Com Shambo2
com_shambo2
Com Sobi2
com_sobi2
Com Ynews
com_ynews
Com Noticias
com_noticias
Com Directory
com_directory
Com Gallery
com_gallery
Com Neogallery
com_neogallery
Com Iomezun
com_iomezun
Com Doc
com_doc
Com Comments
com_comments
Com Quiz
com_quiz
Com Mcquiz
com_mcquiz
Com Mediaslide
com_mediaslide
Com Mezun
com_mezun
Rapid Recipe
rapid_recipe
Com Galeria
com_galeria
Com Clasifier
com_clasifier
Com Profile
com_profile
Com Detail
com_detail
Com Salesrep
com_salesrep
Com Ewriting
com_ewriting
Com Acajoom
com_acajoom
Datsogallery
datsogallery

CVEs (546)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Joomla
Rapid Source
2Com Rapidrecipe
Rapid Recipe
Apr 23, 2026
Jun 13, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to inde...Show more
SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php.Show less
1Joomla
1Com Yvcomment
Apr 23, 2026
Jun 13, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php...Show more
SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php.Show less
1Joomla
2Com News Portal
Joomla
Apr 23, 2026
Jun 12, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.
1Joomla
1Com Joobb
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Joomla! Bulletin Board (aka Joo!BB or com_joobb) component 0.5.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the forum parameter in a forum action to index...Show more
SQL injection vulnerability in the Joomla! Bulletin Board (aka Joo!BB or com_joobb) component 0.5.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the forum parameter in a forum action to index.php.Show less
1Joomla
1Com Biblestudy
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Bible Study (com_biblestudy) component before 6.0.7c for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a mediaplayer action to index.php.
1Joomla
2Com Joomradio
Joomla
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in the EXP JoomRadio (com_joomradio) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) show_radio or (2) show_video ac...Show more
Multiple SQL injection vulnerabilities in the EXP JoomRadio (com_joomradio) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) show_radio or (2) show_video action to index.php.Show less
1Joomla
2Com Acctexp
Joomla
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the acctexp (com_acctexp) component 0.12.x and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the usage parameter in a subscribe action to index.php.
1Joomla
1Com Jb2
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the JooBlog (com_jb2) component 0.1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the CategoryID parameter in a category action to index.php.
1Joomla
1Com Idoblog
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the IDoBlog (com_idoblog) component b24 and earlier and 1.0, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the userid parameter in a userblog action...Show more
SQL injection vulnerability in the IDoBlog (com_idoblog) component b24 and earlier and 1.0, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the userid parameter in a userblog action to index.php.Show less
1Joomla
1Easybook Component
Apr 23, 2026
Jun 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the EasyBook (com_easybook) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gbid parameter in a deleteentry action to index.php.
1Joomla
2Com Simpleshop
Joomla
Apr 23, 2026
Jun 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a browse action to index.p...Show more
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a browse action to index.php.Show less
1Joomla
2Com Jotloader
Joomla
Apr 23, 2026
Jun 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the JotLoader (com_jotloader) component 1.2.1.a and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php.
1Joomla
1Com Xsstream Dm
Apr 23, 2026
May 27, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the xsstream-dm (com_xsstream-dm) component 0.01 Beta for Joomla! allows remote attackers to execute arbitrary SQL commands via the movie parameter to index.php.
3Joomla
MamboPage Flip Tools
3Com Flippingbook
Com FlippingbookFlipping Book
Apr 23, 2026
May 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in index.php in the FlippingBook (com_flippingbook) 1.0.4 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the book_id parameter.
3Joomla
JoomlapolisMambo
3Com Comprofiler
Com ComprofilerCommunity Builder
Apr 23, 2026
May 6, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Profiler (com_comprofiler) component in Community Builder for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the user parameter in a userProfile action...Show more
SQL injection vulnerability in the Profiler (com_comprofiler) component in Community Builder for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the user parameter in a userProfile action to index.php.Show less
1Joomla
1Joomla
Apr 23, 2026
Apr 25, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Filiale 1.0.4 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the idFiliale parameter.
2Joomla
Mambo
2Datsogallery
Datsogallery
Apr 23, 2026
Mar 28, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Datsogallery (com_datsogallery) 1.3.1 module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. NOTE:...Show more
SQL injection vulnerability in the Datsogallery (com_datsogallery) 1.3.1 module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.Show less
1Joomla
1Joomla
Apr 23, 2026
Mar 28, 2008
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Unspecified vulnerability in the XML-RPC Blogger API plugin in Joomla! 1.5 allows remote attackers to perform unauthorized article operations on articles via unknown vectors.
2Joobi
Joomla
2Acajoom
Com Acajoom
Apr 23, 2026
Mar 20, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Joobi Acajoom (com_acajoom) 1.1.5 and 1.2.5 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mailingid parameter in a mailing view action to index...Show more
SQL injection vulnerability in the Joobi Acajoom (com_acajoom) 1.1.5 and 1.2.5 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mailingid parameter in a mailing view action to index.php.Show less
3Ewriting
JoomlaMambo
3Com Ewriting
Com EwritingEwriting
Apr 23, 2026
Mar 12, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in index.php in the eWriting (com_ewriting) 1.2.1 module for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat action.