Каталог CVE

Расширение: Joomla Joomla\!

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 575

Расширение: Joomla Joomla\!
Высокая CVSS 8.8

CVE-2020-10239

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.16. Incorrect Access Control in the SQL fieldtype of com_fields allows access for non-superadmin users.

16.03.2020
Высокая CVSS 7.5

CVE-2020-10238

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.16. Various actions in com_templates lack the required ACL checks, leading to various potential attack vectors.

16.03.2020
Высокая CVSS 7.5

CVE-2011-4937

РасширениеJoomla Joomla\!
Разработчикopenwall

Joomla! 1.7.1 has core information disclosure due to inadequate error checking.

04.02.2020
Высокая CVSS 7.5

CVE-2011-3629

РасширениеJoomla Joomla\!
Разработчикopenwall

Joomla! core 1.7.1 allows information disclosure due to weak encryption

04.02.2020
Средняя CVSS 6.1

CVE-2020-8421

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.15. Inadequate escaping of usernames allows XSS attacks in com_actionlogs.

28.01.2020
Высокая CVSS 8.8

CVE-2020-8420

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.15. A missing CSRF token check in the LESS compiler of com_templates causes a CSRF vulnerability.

28.01.2020
Высокая CVSS 8.8

CVE-2020-8419

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.15. Missing token checks in the batch actions of various components cause CSRF vulnerabilities.

28.01.2020
Средняя CVSS 5.4

CVE-2011-3595

РасширениеJoomla Joomla\!
Разработчикyehg

Multiple Cross-site Scripting (XSS) vulnerabilities exist in Joomla! through 1.7.0 in index.php in the search word, extension, asset, and author parameters.

22.01.2020
Критическая CVSS 9.8

CVE-2019-19846

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

In Joomla! before 3.9.14, the lack of validation of configuration parameters used in SQL queries caused various SQL injection vectors.

18.12.2019
Средняя CVSS 5.3

CVE-2019-18674

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.13. A missing access check in the phputf8 mapping files could lead to a path disclosure.

06.11.2019
Высокая CVSS 8.8

CVE-2019-18650

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

An issue was discovered in Joomla! before 3.9.13. A missing token check in com_template causes a CSRF vulnerability.

06.11.2019