Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

399 résultats

CVE-2026-73373 Unrestricted uploads of SHTML files Joomla CMS · 3 sources · HIGH CVSS 8.9 CVE-2026-73372 Improper ACL checks when injection schema.org contact data Joomla CMS · 3 sources · MEDIUM CVSS 5.1 CVE-2026-73371 Improper ACL checks for batch copy actions Joomla CMS · 3 sources · MEDIUM CVSS 5.1 CVE-2026-73337 MFA Authentication Bypass Joomla CMS · 3 sources · HIGH CVSS 8.2 CVE-2026-73336 XSS through schema.org outputs Joomla CMS · 3 sources · MEDIUM CVSS 5.1 CVE-2026-72532 Improper ACL checks for category webservice endpoints Joomla CMS · 3 sources · MEDIUM CVSS 5.1 CVE-2026-72531 Improper ACL checks for custom fields webservice endpoints Joomla CMS · 3 sources · MEDIUM CVSS 5.1 CVE-2026-71574 Inconsistent ACL checks for mutating webservice endpoints Joomla CMS · 3 sources · HIGH CVSS 8.5 CVE-2026-71573 Improper CORS origin validation Joomla CMS · 3 sources · MEDIUM CVSS 6.9 CVE-2026-71572 Response header injection in download views Joomla CMS · 3 sources · MEDIUM CVSS 4.8 CVE-2026-48947 Incorrect Access Control in com_media webservice endpoints Joomla CMS · 2 sources · LOW CVE-2026-48948 Incorrect Access Control in com_contact vcf download Joomla CMS · 2 sources · LOW CVE-2026-48949 XSS in MFA method management Joomla CMS · 2 sources · MEDIUM CVE-2026-48950 XSS in com_templates Joomla CMS · 2 sources · MEDIUM CVE-2026-48951 XSS in various modalreturn layouts Joomla CMS · 2 sources · MEDIUM CVE-2026-48952 XSS in com_installer Joomla CMS · 2 sources · MEDIUM CVE-2026-48953 XSS in the generic image output layout Joomla CMS · 2 sources · MEDIUM CVE-2026-48954 XSS through language overrides Joomla CMS · 2 sources · MEDIUM CVE-2026-48955 Incorrect Access Control in com_workflow Joomla CMS · 2 sources · MEDIUM CVE-2026-48956 Incorrect Access Control in com_modules Joomla CMS · 2 sources · MEDIUM