Каталог CVE

Расширение: Joomla

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 1 461

Расширение: Joomla
Критическая CVSS 9.3

CVE-2024-11145

Разработчикgithub

Valor Apps Easy Folder Listing Pro has a deserialization vulnerability that allows an unauthenticated, remote attacker to execute arbitrary code with the privileges of the Joomla! applicati…

26.11.2024
Средняя CVSS 5.4

CVE-2024-40746

РасширениеHikashop Hikashop
Разработчикhikashop

A stored cross-site scripting (XSS) vulnerability in HikaShop Joomla Component < 5.1.1 allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a m…

21.10.2024
Средняя CVSS 6.3

CVE-2024-5737

Разработчикcert.pl

Script afGdStream.php in AdmirorFrames Joomla! extension doesn’t specify a content type and as a result default (text/html) is used. An attacker may embed HTML tags directly in image data w…

28.06.2024
Высокая CVSS 8.2

CVE-2024-5736

Разработчикcert.pl

Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from localhost. This…

28.06.2024
Средняя CVSS 6.3

CVE-2024-5735

Разработчикcert.pl

Full Path Disclosure vulnerability in AdmirorFrames Joomla! extension in afHelper.php script allows an unauthorised attacker to retrieve location of web root folder. This issue affects Admi…

28.06.2024
Средняя CVSS 5.3

CVE-2024-32788

Разработчикpatchstack

Insertion of Sensitive Information into Log File vulnerability in Frédéric GILLES FG Joomla to WordPress.This issue affects FG Joomla to WordPress: from n/a through 4.20.2.

24.04.2024
Средняя CVSS 4.3

CVE-2024-24837

Разработчикpatchstack

Cross-Site Request Forgery (CSRF) vulnerability in Frédéric GILLES FG PrestaShop to WooCommerce, Frédéric GILLES FG Drupal to WordPress, Frédéric GILLES FG Joomla to WordPress.This issue af…

21.02.2024
Средняя CVSS 6.1

CVE-2024-21728

РасширениеSmartcalc Osticky
Разработчикgithub

An Open Redirect vulnerability was found in osTicky2 below 2.2.8. osTicky (osTicket Bridge) by SmartCalc is a Joomla 3.x extension that provides Joomla fronted integration with osTicket, a…

15.02.2024