База уязвимостей Joomla

CVE Joomla.
Устраните уязвимости до заражения сайта.

Проверяйте риски раньше, чем они станут инцидентом. Поиск по ядру Joomla и популярным расширениям, оценка CVSS и прямые ссылки на первичные источники.

Динамика уязвимостей Обновляется
1 419 уязвимостей в общем периоде
170за 3 месяца
85за месяц
53за неделю

Данные обновлены 24.07.2026 · по Москве

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Найдено: 1 419

Средняя CVSS 6.8

CVE-2007-5407

Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the JContentSubscription (com_jcs) 1.5.8 component for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mo…

12.10.2007
Средняя CVSS 6.8

CVE-2007-5410

РасширениеJoomla Joomla
Разработчикosvdb

PHP remote file inclusion vulnerability in admin.wmtrssreader.php in the webmaster-tips.net Flash RSS Reader (com_wmtrssreader) 1.0 component for Joomla! allows remote attackers to execute…

12.10.2007
Средняя CVSS 6.8

CVE-2007-5412

РасширениеQuoc-huy Mp3 Allopass
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the Quoc-Huy MP3 Allopass (com_mp3_allopass) 1.0 component for Joomla! allow remote attackers to execute arbitrary PHP code via a URL i…

12.10.2007
Средняя CVSS 6.8

CVE-2007-5389

РасширениеJoomla Joomla
Разработчикosvdb

PHP remote file inclusion vulnerability in preview.php in the swMenuFree (com_swmenufree) 4.6 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mo…

12.10.2007
Средняя CVSS 6.8

CVE-2007-5362

РасширениеAg-solutions Mosmedia Lite
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite (com_mosmedia) 4.5.1 component for Mambo and Joomla! allow remote attackers to execute arbitrar…

11.10.2007
Средняя CVSS 6.8

CVE-2007-5363

РасширениеJoomla Joomla
Разработчикosvdb

PHP remote file inclusion vulnerability in admin.panoramic.php in the Panoramic Picture Viewer (com_panoramic) mambot (plugin) 1.0 for Joomla! allows remote attackers to execute arbitrary P…

11.10.2007
Средняя CVSS 6.8

CVE-2007-5309

РасширениеJoomla Joomla
Разработчикosvdb

PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (com_wmtgallery) 1.0 component for Joomla! allows remote attackers to execute a…

09.10.2007
Средняя CVSS 6.8

CVE-2007-5310

РасширениеJoomla Joomla
Разработчикosvdb

PHP remote file inclusion vulnerability in admin.wmtportfolio.php in the webmaster-tips.net wmtportfolio 1.0 (com_wmtportfolio) component for Joomla! allows remote attackers to execute arbi…

09.10.2007
Высокая CVSS 7.5

CVE-2007-5065

РасширениеJoomla Joomla
Разработчикosvdb

PHP remote file inclusion vulnerability in admin.slideshow1.php in the Flash Slide Show (com_slideshow) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL…

24.09.2007
Средняя CVSS 6.8

CVE-2007-4954

РасширениеJoomla Joom12pic Component
Разработчикsecunia

PHP remote file inclusion vulnerability in admin.joom12pic.php in the joom12Pic (com_joom12pic) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in…

18.09.2007
Средняя CVSS 6.8

CVE-2007-4955

РасширениеJoomla Flash Fun Component
Разработчикsecunia

PHP remote file inclusion vulnerability in admin.joomlaflashfun.php in the Flash Fun! (com_joomlaflashfun) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code vi…

18.09.2007
Средняя CVSS 6.8

CVE-2007-4923

РасширениеJoomla Joomla Radio
Разработчикsecunia

PHP remote file inclusion vulnerability in admin.joomlaradiov5.php in the Joomla Radio 5 (com_joomlaradiov5) component for Joomla! allows remote attackers to execute arbitrary PHP code via…

17.09.2007
Высокая CVSS 7.5

CVE-2007-4817

Разработчикsecunia

Unrestricted file upload vulnerability in the Restaurante (com_restaurante) component for Joomla! allows remote attackers to upload and execute arbitrary PHP code via an upload action speci…

11.09.2007
Высокая CVSS 7.5

CVE-2007-4777

РасширениеJoomla Joomla
Разработчикosvdb

SQL injection vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to execute arbitrary SQL commands via unspecified vectors, probably related to the archive sectio…

10.09.2007
Высокая CVSS 7.5

CVE-2007-4778

РасширениеJoomla Joomla
Разработчикdownloads.securityfocus

Multiple SQL injection vulnerabilities in the content component (com_content) in Joomla! 1.5 Beta1, Beta2, and RC1 allow remote attackers to execute arbitrary SQL commands via the filter pa…

10.09.2007
Средняя CVSS 4.3

CVE-2007-4779

РасширениеJoomla Joomla
Разработчикosvdb

Cross-site scripting (XSS) vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, probably related to…

10.09.2007
Средняя CVSS 6.8

CVE-2007-4780

РасширениеJoomla Joomla
Разработчикosvdb

Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain sensitive information (the full path) via unspecified vectors, probably involving direct requests to certain PHP scrip…

10.09.2007
Средняя CVSS 6.6

CVE-2007-4781

РасширениеJoomla Joomla
Разработчикosvdb

administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to upload arbitrary files to tmp/ via the…

10.09.2007