База уязвимостей Joomla

CVE Joomla.
Устраните уязвимости до заражения сайта.

Проверяйте риски раньше, чем они станут инцидентом. Поиск по ядру Joomla и популярным расширениям, оценка CVSS и прямые ссылки на первичные источники.

Динамика уязвимостей Обновлено
1 419 уязвимостей в общем периоде
170за 3 месяца
85за месяц
53за неделю

Данные обновлены 24.07.2026 · по Москве

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Найдено: 1 419

Критическая CVSS 9.8

CVE-2018-6372

РасширениеJoombooking Jb Bus
Разработчикexploit-db

SQL Injection exists in the JB Bus 2.3 component for Joomla! via the order_number parameter.

17.02.2018
Критическая CVSS 9.8

CVE-2018-6370

РасширениеNeojoomla Neorecruit
Разработчикexploit-db

SQL Injection exists in the NeoRecruit 4.1 component for Joomla! via the (1) PATH_INFO or (2) name of a .html file under the all-offers/ URI.

17.02.2018
Критическая CVSS 9.8

CVE-2018-6368

РасширениеComdev Jomestate Pro
Разработчикexploit-db

SQL Injection exists in the JomEstate PRO through 3.7 component for Joomla! via the id parameter in a task=detailed action.

17.02.2018
Критическая CVSS 9.8

CVE-2018-6006

РасширениеJoomsky Js Autoz
Разработчикexploit-db

SQL Injection exists in the JS Autoz 1.0.9 component for Joomla! via the vtype, pre, or prs parameter.

17.02.2018
Критическая CVSS 9.8

CVE-2018-6005

РасширениеRealpin Project Realpin
Разработчикexploit-db

SQL Injection exists in the Realpin through 1.5.04 component for Joomla! via the pinboard parameter.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5994

РасширениеJoomsky Js Jobs
Разработчикexploit-db

SQL Injection exists in the JS Jobs 1.1.9 component for Joomla! via the zipcode parameter in a newest-jobs request, or the ta parameter in a view_resume request.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5993

РасширениеAist Project Aist
Разработчикexploit-db

SQL Injection exists in the Aist through 2.0 component for Joomla! via the id parameter in a view=showvacancy request.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5991

РасширениеWeb-dorado Form Maker
Разработчикexploit-db

SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats request, a different vulnerability than CVE-2015-2798.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5989

РасширениеChillcreations Ccnewsletter
Разработчикexploit-db

SQL Injection exists in the ccNewsletter 2.x component for Joomla! via the id parameter in a task=removeSubscriber action, a related issue to CVE-2011-5099.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5987

Разработчикexploit-db

SQL Injection exists in the Pinterest Clone Social Pinboard 2.0 component for Joomla! via the pin_id or user_id parameter in a task=getlikeinfo action, the ends parameter in a view=gift act…

17.02.2018
Критическая CVSS 9.8

CVE-2018-5982

РасширениеOrdasoft Advertisement Board
Разработчикexploit-db

SQL Injection exists in the Advertisement Board 3.1.0 component for Joomla! via a task=show_rss_categories&catname= request.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5981

РасширениеWeb-dorado Gallery Wd
Разработчикexploit-db

SQL Injection exists in the Gallery WD 1.3.6 component for Joomla! via the tag_id parameter or gallery_id parameter.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5980

РасширениеSolidres Solidres
Разработчикexploit-db

SQL Injection exists in the Solidres 2.5.1 component for Joomla! via the direction parameter in a hub.search action.

17.02.2018