Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

217 résultats

CVE-2020-35613 An issue was discovered in Joomla! Joomla CMS · 1 source · CRITICAL CVSS 9.8 CVE-2020-10243 An issue was discovered in Joomla! Joomla CMS · 1 source · CRITICAL CVSS 9.8 CVE-2011-4908 TinyBrowser plugin for Joomla! tinybrowser · 1 source · CRITICAL CVSS 9.8 CVE-2011-4906 Tiny browser in TinyMCE 3.0 editor in Joomla! tinybrowser · 1 source · CRITICAL CVSS 9.8 CVE-2014-8739 Unrestricted file upload vulnerability in server/php/UploadHandler.php in the jQuery File Upload Plugin 6.4.4 for jQuery, as used in the Creative Solutions Cre… creative_contact_form · 1 source · CRITICAL CVSS 9.8 CVE-2011-1151 Joomla! 1.6.0 is vulnerable to SQL Injection via the filter_order and filer_order_Dir parameters. Joomla CMS · 1 source · CRITICAL CVSS 9.1 CVE-2019-17527 dataForDepandantField in models/custormfields.php in the JS JOBS FREE extension before 1.2.7 for Joomla! js_jobs · 1 source · CRITICAL CVSS 9.8 CVE-2019-19846 In Joomla! before 3.9.14, the lack of validation of configuration parameters used in SQL queries caused various SQL injection vectors. Joomla CMS · 1 source · CRITICAL CVSS 9.8 CVE-2019-19634 class.upload.php in verot.net class.upload through 1.0.3 and 2.x through 2.0.4, as used in the K2 extension for Joomla! k2 · 1 source · CRITICAL CVSS 9.8 CVE-2019-19576 class.upload.php in verot.net class.upload before 1.0.3 and 2.x before 2.0.4, as used in the K2 extension for Joomla! k2 · 1 source · CRITICAL CVSS 9.8 CVE-2019-17399 The Shack Forms Pro extension before 4.0.32 for Joomla! shack_forms_pro · 1 source · CRITICAL CVSS 9.8 CVE-2018-17386 SQL Injection exists in the Micro Deal Factory 2.4.0 component for Joomla! micro_deal_factory · 1 source · CRITICAL CVSS 9.8 CVE-2018-17381 SQL Injection exists in the Dutch Auction Factory 2.0.2 component for Joomla! dutch_auction_factory · 1 source · CRITICAL CVSS 9.8 CVE-2018-17374 SQL Injection exists in the Auction Factory 4.5.5 component for Joomla! auction_factory · 1 source · CRITICAL CVSS 9.8 CVE-2018-17399 SQL Injection exists in the Jimtawl 2.2.7 component for Joomla! jimtawl · 1 source · CRITICAL CVSS 9.8 CVE-2018-17398 SQL Injection exists in the AMGallery 1.2.3 component for Joomla! amgallery · 1 source · CRITICAL CVSS 9.8 CVE-2019-12765 An issue was discovered in Joomla! Joomla CMS · 1 source · CRITICAL CVSS 9.8 CVE-2017-12758 https://www.joomlaextensions.co.in/ Joomla! component_appointment · 1 source · CRITICAL CVSS 9.8 CVE-2019-10945 An issue was discovered in Joomla! Joomla CMS · 1 source · CRITICAL CVSS 9.8 CVE-2019-9918 An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. je_messenger · 1 source · CRITICAL CVSS 9.1