CVE-2019-17527

Vulnérabilités

CVE-2019-17527

dataForDepandantField in models/custormfields.php in the JS JOBS FREE extension before 1.2.7 for Joomla!

CRITICAL js_jobs Composant

dataForDepandantField in models/custormfields.php in the JS JOBS FREE extension before 1.2.7 for Joomla! allows SQL Injection via the index.php?option=com_jsjobs&task=customfields.getfieldtitlebyfieldandfieldfo child parameter.

9.8 Critique · CVSS 3.1

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDCRITICAL 9.8 (v3.1)
Produit
js_jobs
Type
Composant
Corrigée dans
1.2.7
Publiée
19/12/2019
Modifiée
17/06/2026
CWE
CWE-89
  • js_jobs — jusqu'à 1.2.7 (exclue)

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC