Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

1220 résultats

CVE-2026-65712 Insecure path handling in CDN for Joomla Pro extension Extension Joomla — regularlabs.com · 1 source · MEDIUM CVSS 6.2 CVE-2026-65431 Zipslip in GeoIP extension Extension Joomla — regularlabs.com · 1 source · CRITICAL CVSS 9.8 CVE-2026-65430 MaxMind Credential leakage in GeoIP extension Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 7.5 CVE-2026-64876 Inconsistent CSRF token checks / privilege checks in GeoIP extension Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 8.8 CVE-2026-64875 IP spoofing vulnerability in GeoIP extension Extension Joomla — regularlabs.com · 1 source · MEDIUM CVSS 6.5 CVE-2026-64874 CDN Credential leakage Cache Cleaner Pro extension Extension Joomla — regularlabs.com · 1 source · CRITICAL CVSS 9.8 CVE-2026-64873 SSRF in Cache Cleaner Pro extension Extension Joomla — regularlabs.com · 1 source · CRITICAL CVSS 9.8 CVE-2026-64872 Path traversal in Cache Cleaner Pro extension Extension Joomla — regularlabs.com · 1 source · MEDIUM CVSS 6.5 CVE-2026-64871 Inconsistent CSRF token checks / privilege checks in Cache Cleaner extension Extension Joomla — regularlabs.com · 1 source · MEDIUM CVSS 5.4 CVE-2026-64799 SSRF via remote image downloads in Articles Anywhere and Users Anywhere extensions Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 7.5 CVE-2026-64798 Insecure login URL keys in IP login extension Extension Joomla — regularlabs.com · 1 source · CRITICAL CVSS 9.1 CVE-2026-64797 IP spoofing vulnerability in IP login extension Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 7.5 CVE-2026-64796 various code injection vectors in Sourcerer extension Extension Joomla — regularlabs.com · 1 source · CRITICAL CVSS 9.8 CVE-2026-64795 XSS vectors in tag-provided inputs in various Regular Labs extensions Extension Joomla — regularlabs.com · 1 source · MEDIUM CVSS 5.4 CVE-2026-64794 restricted user-data exposure in Users Anywhere and Articles Anywhere extensions Extension Joomla — regularlabs.com · 1 source · MEDIUM CVSS 6.5 CVE-2026-64793 Content access and publication bypass in Articles Anywhere and Modules Anywhere extensions Extension Joomla — regularlabs.com · 1 source · CRITICAL CVSS 9.1 CVE-2026-64792 disclosure of restricted content via search index in various Regular Labs extensions Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 7.5 CVE-2026-64791 Inconsistent CSRF token checks / privilege checks in Regular Labs Extension Manager Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 8.8 CVE-2026-63685 Authorization bypass in DB Replacer extension Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 8.8 CVE-2026-63684 Inconsistent CSRF token checks / privilege checks in various admin/import/export actions of multiple Regular Labs extension Extension Joomla — regularlabs.com · 1 source · HIGH CVSS 8.8