Каталог CVE

Расширение: Joomla Joomla\!

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 575

Расширение: Joomla Joomla\!
Средняя CVSS 6.1

CVE-2020-24598

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to an open redirect.

26.08.2020
Средняя CVSS 6.3

CVE-2020-15700

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! through 3.9.19. A missing token check in the ajax_install endpoint of com_installer causes a CSRF vulnerability.

15.07.2020
Средняя CVSS 5.3

CVE-2020-15699

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! through 3.9.19. Missing validation checks on the usergroups table object can result in a broken site configuration.

15.07.2020
Средняя CVSS 5.3

CVE-2020-15698

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! through 3.9.19. Inadequate filtering on the system information screen could expose Redis or proxy credentials

15.07.2020
Средняя CVSS 4.3

CVE-2020-15697

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! through 3.9.19. Internal read-only fields in the User table class could be modified by users.

15.07.2020
Средняя CVSS 6.1

CVE-2020-15696

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! through 3.9.19. Lack of input filtering and escaping allows XSS attacks in mod_random_image.

15.07.2020
Средняя CVSS 6.3

CVE-2020-15695

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! through 3.9.19. A missing token check in the remove request section of com_privacy causes a CSRF vulnerability.

15.07.2020
Высокая CVSS 7.5

CVE-2020-13763

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

In Joomla! before 3.9.19, the default settings of the global textfilter configuration do not block HTML inputs for Guest users.

02.06.2020
Средняя CVSS 6.1

CVE-2020-13762

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

In Joomla! before 3.9.19, incorrect input validation of the module tag option in com_modules allows XSS.

02.06.2020
Средняя CVSS 6.1

CVE-2020-13761

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

In Joomla! before 3.9.19, lack of input validation in the heading tag option of the "Articles - Newsflash" and "Articles - Categories" modules allows XSS.

02.06.2020
Средняя CVSS 5.3

CVE-2020-11891

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized editing of usergroups.

21.04.2020
Средняя CVSS 5.3

CVE-2020-11890

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.17. Improper input validations in the usergroup table class could lead to a broken ACL configuration.

21.04.2020
Средняя CVSS 5.3

CVE-2020-11889

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized deletion of usergroups.

21.04.2020
Критическая CVSS 9.8

CVE-2020-10243

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.16. The lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Featured Articles frontend menutype.

16.03.2020
Средняя CVSS 6.1

CVE-2020-10242

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.16. Inadequate handling of CSS selectors in the Protostar and Beez3 JavaScript allows XSS attacks.

16.03.2020
Высокая CVSS 8.8

CVE-2020-10241

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.16. Missing token checks in the image actions of com_templates lead to CSRF.

16.03.2020
Средняя CVSS 5.3

CVE-2020-10240

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.16. Missing length checks in the user table can lead to the creation of users with duplicate usernames and/or email addresses.

16.03.2020