База уязвимостей Joomla

CVE Joomla.
Устраните уязвимости до заражения сайта.

Проверяйте риски раньше, чем они станут инцидентом. Поиск по ядру Joomla и популярным расширениям, оценка CVSS и прямые ссылки на первичные источники.

Динамика уязвимостей Обновляется
1 419 уязвимостей в общем периоде
170за 3 месяца
85за месяц
53за неделю

Данные обновлены 24.07.2026 · по Москве

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Найдено: 1 419

Высокая CVSS 7.5

CVE-2009-2634

РасширениеJoomla Joomla
Разработчикexploit-db

PHP remote file inclusion vulnerability in toolbar_ext.php in the MediaLibrary (com_media_library) component 1.5.3 Basic for Joomla! allows remote attackers to execute arbitrary PHP code vi…

28.07.2009
Высокая CVSS 7.5

CVE-2009-2633

РасширениеJoomla Joomla
Разработчикexploit-db

PHP remote file inclusion vulnerability in toolbar_ext.php in the VehicleManager (com_vehiclemanager) component 1.0 Basic for Joomla! allows remote attackers to execute arbitrary PHP code v…

28.07.2009
Высокая CVSS 7.5

CVE-2009-2609

РасширениеJoomla Joomla
Разработчикexploit-db

SQL injection vulnerability in the amoCourse (com_amocourse) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a category action to…

27.07.2009
Высокая CVSS 7.5

CVE-2009-2607

РасширениеJoomla Joomla
Разработчикexploit-db

SQL injection vulnerability in the com_pinboard component for Joomla! allows remote attackers to execute arbitrary SQL commands via the task parameter in a showpic action to index.php.

27.07.2009
Высокая CVSS 7.5

CVE-2009-2601

РасширениеJoomlaequipment Juser
Разработчикexploit-db

SQL injection vulnerability in the Joomlaequipment (aka JUser or com_juser) component 2.0.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a s…

27.07.2009
Высокая CVSS 7.5

CVE-2009-2567

РасширениеAlmondsoft Almond Classifieds
Разработчикexploit-db

SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 5.6.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.

22.07.2009
Средняя CVSS 6.8

CVE-2009-2554

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the search method in jobline.class.php in Jobline (com_jobline) 1.1.2.2, 1.3.1, and possibly earlier versions, a component for Joomla!, allows remote attacker…

20.07.2009
Высокая CVSS 7.5

CVE-2009-2400

РасширениеJoomla Joomla
Разработчикexploit-db

SQL injection vulnerability in the PHP (com_php) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.

09.07.2009
Высокая CVSS 7.5

CVE-2009-2395

РасширениеJoomlaworks Com K2
Разработчикexploit-db

SQL injection vulnerability in the K2 (com_k2) component 1.0.1 Beta and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category parameter in an itemli…

09.07.2009
Высокая CVSS 7.5

CVE-2009-2390

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the BookFlip (com_bookflip) component 2.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the book_id parameter to index.php.

09.07.2009
Высокая CVSS 7.5

CVE-2008-6852

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in the Ice Gallery (com_ice) component 0.5 beta 2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

07.07.2009
Высокая CVSS 7.5

CVE-2009-2290

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in the Boy Scout Advancement (com_bsadv) component 0.3 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in…

01.07.2009
Высокая CVSS 7.5

CVE-2008-6841

РасширениеJoomla Joomla
Разработчикsecurityfocus

PHP remote file inclusion vulnerability in the Green Mountain Information Technology and Consulting Database Query (com_dbquery) component 1.4.1.1 and earlier for Joomla! allows remote atta…

01.07.2009
Высокая CVSS 7.5

CVE-2009-2239

РасширениеJoomla Joomla
Разработчикexploit-db

SQL injection vulnerability in the (1) casinobase (com_casinobase), (2) casino_blackjack (com_casino_blackjack), and (3) casino_videopoker (com_casino_videopoker) components 0.3.1 for Jooml…

27.06.2009
Высокая CVSS 7.5

CVE-2009-2102

РасширениеCom Jumi Com Jumi
Разработчикosvdb

SQL injection vulnerability in the Jumi (com_jumi) component 2.0.3 and possibly other versions for Joomla allows remote attackers to execute arbitrary SQL commands via the fileid parameter…

17.06.2009
Средняя CVSS 5.0

CVE-2009-2100

РасширениеJoomla Joomla
Разработчикosvdb

Directory traversal vulnerability in the JoomlaPraise Projectfork (com_projectfork) component 2.0.10 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequ…

17.06.2009
Высокая CVSS 7.5

CVE-2009-2099

РасширениеJoomla Joomla
Разработчикosvdb

SQL injection vulnerability in the iJoomla RSS Feeder (com_ijoomla_rss) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in an xml actio…

17.06.2009
Высокая CVSS 7.5

CVE-2009-2015

РасширениеJoomla Joomla
Разработчикsecunia

Directory traversal vulnerability in includes/file_includer.php in the Ideal MooFAQ (com_moofaq) component 1.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot)…

09.06.2009