База уязвимостей Joomla

CVE Joomla.
Устраните уязвимости до заражения сайта.

Проверяйте риски раньше, чем они станут инцидентом. Поиск по ядру Joomla и популярным расширениям, оценка CVSS и прямые ссылки на первичные источники.

Динамика уязвимостей Обновлено
1 419 уязвимостей в общем периоде
170за 3 месяца
85за месяц
53за неделю

Данные обновлены 24.07.2026 · по Москве

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Найдено: 1 419

Высокая CVSS 7.5

CVE-2010-2513

Разработчикjoomla

SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the view parame…

28.06.2010
Средняя CVSS 6.8

CVE-2010-2507

РасширениеMasselink Com Picasa2gallery
Разработчикjoomla

Directory traversal vulnerability in the Picasa2Gallery (com_picasa2gallery) component 1.2.8 and earlier for Joomla! allows remote attackers to read arbitrary files and possibly have unspec…

28.06.2010
Средняя CVSS 4.3

CVE-2010-2464

РасширениеRsjoomla Com Rscomments
Разработчикrsjoomla

Multiple cross-site scripting (XSS) vulnerabilities in the RSComments (com_rscomments) component 1.0.0 Rev 2 for Joomla! allow remote attackers to inject arbitrary web script or HTML via th…

25.06.2010
Высокая CVSS 7.5

CVE-2010-2259

Разработчикjoomla

Directory traversal vulnerability in the BF Survey (com_bfsurvey) component for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the contro…

09.06.2010
Высокая CVSS 7.5

CVE-2010-2255

Разработчикjoomla

SQL injection vulnerability in the BF Survey Pro (com_bfsurvey_pro) component before 1.3.1, BF Survey Pro Free (com_bfsurvey_profree) component 1.2.6, and BF Survey Basic component before 1…

09.06.2010
Высокая CVSS 7.5

CVE-2010-2254

РасширениеShape5 Bridge Of Hope Template
Разработчикpacketstormsecurity

SQL injection vulnerability in the Shape5 Bridge of Hope template for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to index.ph…

09.06.2010
Средняя CVSS 4.3

CVE-2010-1649

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

Multiple cross-site scripting (XSS) vulnerabilities in the back end in Joomla! 1.5 through 1.5.17 allow remote attackers to inject arbitrary web script or HTML via unknown vectors related t…

08.06.2010
Высокая CVSS 7.5

CVE-2010-2148

РасширениеUnisoft Com Mycar
Разработчикosvdb

SQL injection vulnerability in the My Car (com_mycar) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the pagina parameter to index.php.

03.06.2010
Средняя CVSS 4.3

CVE-2010-2147

РасширениеUnisoft Com Mycar
Разработчикosvdb

Cross-site scripting (XSS) vulnerability in the My Car (com_mycar) component 1.0 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the modveh parameter to index…

03.06.2010
Высокая CVSS 7.5

CVE-2010-2128

Разработчикsecunia

Directory traversal vulnerability in the JE Quotation Form (com_jequoteform) component 1.0b1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other…

01.06.2010
Средняя CVSS 6.8

CVE-2010-2122

РасширениеJoelrowley Com Simpledownload
Разработчикpacketstormsecurity

Directory traversal vulnerability in the SimpleDownload (com_simpledownload) component before 0.9.6 for Joomla! allows remote attackers to include and execute arbitrary local files via a ..…

01.06.2010
Высокая CVSS 7.5

CVE-2010-2050

РасширениеM0r0n Com Mscomment
Разработчикpacketstormsecurity

Directory traversal vulnerability in the Moron Solutions MS Comment (com_mscomment) component 0.8.0b for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the co…

25.05.2010
Высокая CVSS 7.5

CVE-2010-2045

РасширениеDionesoft Com Dioneformwizard
Разработчикosvdb

Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote attackers to read arbitrary files via directory trav…

25.05.2010
Высокая CVSS 7.5

CVE-2010-2044

РасширениеAdhie Utomo Com Konsultasi
Разработчикosvdb

SQL injection vulnerability in the Konsultasi (com_konsultasi) component 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the sid parameter in a detail action…

25.05.2010
Высокая CVSS 7.5

CVE-2010-2037

Разработчикjoomla

Directory traversal vulnerability in the Percha Downloads Attach (com_perchadownloadsattach) component 1.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unsp…

25.05.2010
Высокая CVSS 7.5

CVE-2010-2036

РасширениеPercha Com Perchafieldsattach
Разработчикpacketstormsecurity

Directory traversal vulnerability in the Percha Fields Attach (com_perchafieldsattach) component 1.x for Joomla! allows remote attackers to read arbitrary files and possibly have unspecifie…

25.05.2010