База уязвимостей Joomla

CVE Joomla.
Устраните уязвимости до заражения сайта.

Проверяйте риски раньше, чем они станут инцидентом. Поиск по ядру Joomla и популярным расширениям, оценка CVSS и прямые ссылки на первичные источники.

Динамика уязвимостей Обновлено
1 494 уязвимостей в общем периоде
209за 3 месяца
44за месяц
0за неделю

Данные обновлены 20.08.2026 · по Москве

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Найдено: 1 494

Высокая CVSS 7.5

CVE-2010-0945

РасширениеHotbrackets Com Hotbrackets
Разработчикexploit-db

SQL injection vulnerability in the HotBrackets Tournament Brackets (com_hotbrackets) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to…

08.03.2010
Средняя CVSS 5.0

CVE-2010-0944

РасширениеThorsten Riess Com Jcollection
Разработчикpacketstormsecurity

Directory traversal vulnerability in the JCollection (com_jcollection) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter t…

08.03.2010
Средняя CVSS 5.0

CVE-2010-0943

РасширениеJoomlart Com Jashowcase
Разработчикpacketstormsecurity

Directory traversal vulnerability in the JA Showcase (com_jashowcase) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter in…

08.03.2010
Средняя CVSS 5.0

CVE-2010-0942

РасширениеJvideodirect Com Jvideodirect
Разработчикpacketstormsecurity

Directory traversal vulnerability in the jVideoDirect (com_jvideodirect) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter…

08.03.2010
Высокая CVSS 7.5

CVE-2009-4679

РасширениеInertialfate Com If Nexus
Разработчикsecunia

Directory traversal vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.5 for Joomla! allows remote attackers to include and execute arbitrary local files via a…

08.03.2010
Высокая CVSS 7.5

CVE-2010-0803

РасширениеJvideodirect Com Jvideodirect
Разработчикosvdb

SQL injection vulnerability in the jVideoDirect (com_jvideodirect) component 1.1 RC3b for Joomla! allows remote attackers to execute arbitrary SQL commands via the v parameter to index.php.

02.03.2010
Низкая CVSS 3.5

CVE-2010-0801

РасширениеAutartica Com Autartitarot
Разработчикosvdb

Directory traversal vulnerability in the AutartiTarot (com_autartitarot) component 1.0.3 for Joomla! allows remote authenticated users, with "Public Back-end" group permissions, to read arb…

02.03.2010
Высокая CVSS 7.5

CVE-2010-0800

РасширениеJoomservices Com Dms
Разработчикosvdb

SQL injection vulnerability in the Ossolution Team Documents Seller (aka DMS) (com_dms) component 2.5.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the categor…

02.03.2010
Высокая CVSS 7.5

CVE-2010-0796

Разработчикosvdb

SQL injection vulnerability in the JE Quiz (com_jequizmanagement) component 1.b01 for Joomla! allows remote attackers to execute arbitrary SQL commands via the eid parameter in a question a…

02.03.2010
Высокая CVSS 7.5

CVE-2010-0795

Разработчикosvdb

SQL injection vulnerability in the JE Event Calendars (com_jeeventcalendar) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in…

02.03.2010
Средняя CVSS 6.8

CVE-2010-0760

Разработчикsecunia

Multiple directory traversal vulnerabilities in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allow remote attackers to include and execute arbitrary local files via directory trav…

27.02.2010
Высокая CVSS 7.5

CVE-2010-0759

Разработчикpacketstormsecurity

Directory traversal vulnerability in plugins/system/cdscriptegrator/libraries/highslide/js/jsloader.php in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allows remote attackers to…

27.02.2010
Высокая CVSS 7.5

CVE-2010-0753

РасширениеComponentslab Com Sqlreport
Разработчикosvdb

SQL injection vulnerability in the SQL Reports (com_sqlreport) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter to ajax/print.ph…

27.02.2010
Средняя CVSS 5.0

CVE-2010-0696

РасширениеJoomlaworks Jw Allvideos
Разработчикosvdb

Directory traversal vulnerability in includes/download.php in the JoomlaWorks AllVideos (Jw_allVideos) plugin 3.0 through 3.2 for Joomla! allows remote attackers to read arbitrary files via…

23.02.2010
Высокая CVSS 7.5

CVE-2010-0694

РасширениеPercha Com Perchagallery
Разработчикdocs.joomla

SQL injection vulnerability in the PerchaGallery (com_perchagallery) component before 1.5b for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an e…

23.02.2010
Высокая CVSS 7.5

CVE-2010-0692

РасширениеIptechinside Com Jquarks
Разработчикsecunia

SQL injection vulnerability in the IP-Tech JQuarks (com_jquarks) Component 0.2.3, and possibly earlier, for Joomla! allows remote attackers to execute arbitrary SQL commands via the id para…

23.02.2010
Средняя CVSS 4.3

CVE-2009-4651

РасширениеOnnogroen Com Webeecomment
Разработчикjeffchannell

Multiple cross-site scripting (XSS) vulnerabilities in the Webee Comments (com_webeecomment) component 1.1.1, 1.2, and 2.0 for Joomla! allow remote attackers to inject arbitrary web script…

22.02.2010
Высокая CVSS 7.5

CVE-2009-4650

РасширениеOnnogroen Com Webeecomment
Разработчикjeffchannell

SQL injection vulnerability in the Webee Comments (com_webeecomment) component 1.1.1, 1.2, and 2.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the articleId pa…

22.02.2010