Каталог CVE

Разработчик: joomshaper.com

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 5

Разработчик: joomshaper.com
Критическая CVSS 9.3

CVE-2026-65761

РасширениеEasy Store
Разработчикjoomshaper.com

Unauthenticated SQL injection in Easy Store extension 1.0.0-2.0.1 - Improper validation of order parameters lead to an unauthenticated SQL injection in easystore, allowing full DB read acce…

23.07.2026 Требует внимания
Критическая CVSS 9.2

CVE-2026-65760

РасширениеEasy Store
Разработчикjoomshaper.com

cross-customer order and personal information disclosure in Easy Store extension 1.0.0-2.0.1 - Improper access checks allow logged in users to retreive order and customer information of any…

23.07.2026 Требует внимания
Высокая CVSS 8.7

CVE-2026-65759

РасширениеEasy Store
Разработчикjoomshaper.com

unauthenticated payment/order forgery in Easy Store extension 1.0.0-2.0.1 - Critical order and payment information, including states, are processed from client side input, enabling unauthen…

23.07.2026 Требует внимания
Высокая CVSS 8.8

CVE-2026-57830

РасширениеHelix Ultimate
Разработчикjoomshaper.com

Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.

13.07.2026 Требует внимания
Высокая CVSS 8.7

CVE-2026-57829

РасширениеHelix Ultimate
Разработчикjoomshaper.com

Unauthenticated stored XSS in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated stored XSS.

13.07.2026 Требует внимания