База уязвимостей Joomla

CVE Joomla.
Устраните уязвимости до заражения сайта.

Проверяйте риски раньше, чем они станут инцидентом. Поиск по ядру Joomla и популярным расширениям, оценка CVSS и прямые ссылки на первичные источники.

Динамика уязвимостей Обновляется
1 419 уязвимостей в общем периоде
170за 3 месяца
85за месяц
53за неделю

Данные обновлены 24.07.2026 · по Москве

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Найдено: 1 419

Средняя CVSS 6.8

CVE-2007-3130

РасширениеJoomla Jd-wiki
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla! allow remote attackers to execute arbi…

08.06.2007
Высокая CVSS 7.5

CVE-2007-2933

РасширениеPhil-a-form Phil-a-form
Разработчикosvdb

SQL injection vulnerability in index.php in the Phil-a-Form (com_philaform) 1.2.0.0 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the form_…

31.05.2007
Высокая CVSS 7.5

CVE-2007-2792

РасширениеCom Yanc Com Yanc
Разработчикosvdb

SQL injection vulnerability in the Yet another Newsletter Component (aka YaNC or com_yanc) component before 1.5 beta 3 for Mambo and Joomla! allows remote attackers to execute arbitrary SQL…

22.05.2007
Средняя CVSS 6.8

CVE-2007-2319

Разработчикosvdb

PHP remote file inclusion vulnerability in the AutoStand 1.1 and earlier module for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path pa…

26.04.2007
Средняя CVSS 6.8

CVE-2007-2199

Разработчикosvdb

PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Library, as used in multiple products includi…

24.04.2007
Средняя CVSS 6.8

CVE-2007-2196

РасширениеJoomla Jambook
Разработчикattrition

PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in…

24.04.2007
Высокая CVSS 7.5

CVE-2007-2143

Разработчикosvdb

PHP remote file inclusion vulnerability in index.php in the Be2004-2 template for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path para…

19.04.2007
Средняя CVSS 6.8

CVE-2007-2144

РасширениеJoomlapack Joomlapack
Разработчикosvdb

PHP remote file inclusion vulnerability in includes/CAltInstaller.php in the JoomlaPack (com_jpack) 1.0.4a2 RE component for Joomla! allows remote attackers to execute arbitrary PHP code vi…

19.04.2007
Средняя CVSS 6.8

CVE-2007-2089

Разработчикsecurityfocus

Multiple PHP remote file inclusion vulnerabilities in the Jx Development Article 1.1 and earlier component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a U…

18.04.2007
Высокая CVSS 7.5

CVE-2007-2043

РасширениеAvant-garde Solutions Mosmedia
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia (com_mosmedia) 1.08 and earlier module for Mambo and Joomla! allow remote attackers to execute arbit…

16.04.2007
Высокая CVSS 7.5

CVE-2007-2044

Разработчикosvdb

PHP remote file inclusion vulnerability in mod_weather.php in the Antonis Ventouris Weather module for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in t…

16.04.2007
Средняя CVSS 6.8

CVE-2007-2005

РасширениеJoomla Taskhopper Component
Разработчикattrition

Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_abso…

12.04.2007
Средняя CVSS 6.8

CVE-2007-1776

РасширениеDesign For Joomla D4j Ezine
Разработчикosvdb

SQL injection vulnerability in index.php in the DesignForJoomla.com D4J eZine (com_ezine) 2.8 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via…

30.03.2007
Высокая CVSS 10.0

CVE-2007-1699

РасширениеJoomla Swmenu Component
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code…

27.03.2007
Высокая CVSS 7.5

CVE-2007-1703

РасширениеJoomla Rwcards Component
Разработчикosvdb

SQL injection vulnerability in index.php in the RWCards (com_rwcards) 2.4.3 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id p…

27.03.2007
Высокая CVSS 7.5

CVE-2007-1704

РасширениеJoomla Car Manager
Разработчикosvdb

SQL injection vulnerability in index.php in the Car Manager (com_resman) 1.1 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.

27.03.2007
Высокая CVSS 9.3

CVE-2007-1596

РасширениеJoomla Nfn Address Book
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via…

22.03.2007
Средняя CVSS 6.8

CVE-2006-7122

РасширениеJoomla Bsq Sitestats
Разработчикsecunia

Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allows remote attack…

06.03.2007