CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
96 CVEs gefunden (Seite 1/1)

CVE-2026-71571 - Joomla Extension - icagenda.com - Authenticated SQL injection via unescaped numeric filter in iCage

🏢 Joomla 📅 14.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-67365 - Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 - Unauthe

🏢 Joomla 📅 14.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-62415 - Joomla Extension - joomdonation.com - Insecure default configuration Membership Pro < 4.6.2 - The Jo

🏢 Joomla 📅 21.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-62414 - Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 - The Joomla ext

🏢 Joomla 📅 20.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-61901 - Joomla Extension - hikashop.com - Open redirect in Hikashop < 6.5.2 - The Joomla extension Hikashop

🏢 Joomla 📅 20.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-61900 - Joomla Extension - dj-extensions.com - Unauthenticated arbitrary file upload in DJ-jDownloads < 4.1.

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-61425 - Joomla Extension - balbooa.com - Authentication bypass in Gridbox < 1.6.0 - The Joomla extension Gri

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-61424 - Joomla Extension - dj-extensions.com - Unauthenticated arbitrary file upload in DJ-Classifieds < 3.1

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60034 - Joomla Extension - themexpert.com - Authenticated stored XSS in JMedia Extension < 1.6.0 - The Jooml

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60033 - Joomla Extension - themexpert.com - SSRF via remote download in JMedia Extension < 1.6.0 - The Jooml

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60032 - Joomla Extension - themexpert.com - Authenticated arbitrary file upload in JMedia < 1.6.0 - The Joom

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60031 - Joomla Extension - themexpert.com - Information disclosure in Quix Page Builder < 6.2.1 - The Joomla

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60030 - Joomla Extension - themexpert.com - Broken Access Control for media management in Quix Page Builder

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60029 - Joomla Extension - themexpert.com - Authenticated stored XSS in Quix Page Builder < 6.2.1 - The Joom

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60028 - Joomla Extension - themexpert.com - Authenticated stored XSS in Quix Page Builder < 6.2.1 - The Joom

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60027 - Joomla Extension - themexpert.com - Unauthenticated path traversal / file read in Quix Page Builder

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60026 - Joomla Extension - themexpert.com - Authenticated PHP code execution in Quix Page Builder < 6.2.1 -

🏢 Joomla 📅 20.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-60025 - Joomla Extension - joomdonation.com - User enumeration in Events Booking < 5.8.0 - The Joomla extens

🏢 Joomla 📅 17.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-60024 - Joomla Extension - joomdonation.com - Insecure default configuration Events Booking < 5.8.0 - The Jo

🏢 Joomla 📅 17.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-58149 - Joomla Extension - joomdonation.com - User enumeration in Events Booking < 5.8.0 - The Joomla extens

🏢 Joomla 📅 17.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-58148 - Joomla Extension - chronoengine.com - Stored XSS in ChronoForms extension for Joomla 8.0 - 8.0.52 -

🏢 Joomla 📅 17.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-58078 - Joomla Extension - themexpert.com - Unauthenticated SQL injection in Quix Page Builder Pro < 6.2.1 -

🏢 Joomla 📅 16.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-58077 - Joomla Extension - weeblr.com - Unauthenticated stored XSS in 4Analytics < 5.0.2 - The Joomla extens

🏢 Joomla 📅 15.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-57833 - Joomla Extension - weeblr.com - Unauthenticated stored XSS in 4Analytics < 5.0.2 - The Joomla extens

🏢 Joomla 📅 15.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-57832 - Joomla Extension - joomdonation.com - Unauthenticated blind SQL injection in EDocman < 3.9 - The Joo

🏢 Joomla 📅 15.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-57831 - Joomla Extension - digital-peak.com - Unauthenticated blind SQL injection in DP Calendar 8.18.0 - 10

🏢 Joomla 📅 15.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-57830 - Joomla Extension - joomshaper.com - Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.

🏢 Joomla 📅 13.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-57829 - Joomla Extension - joomshaper.com - Unauthenticated stored XSS in Helix Ultimate < 2.2.7 - The Jooml

🏢 Joomla 📅 13.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-57828 - Joomla Extension - phoca.cz - Authenticated file upload in RSFiles component < 6.1.3 - The Joomla ex

🏢 Joomla 📅 11.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57827 - Joomla Extension - rsjoomla.com - Unauthenticated file upload in RSFiles component < 1.17.12 - The J

🏢 Joomla 📅 11.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-56292 - Joomla Extension - acymailing.com - SQL Injection in AcyMailing extension < 10.11.1 - A SQLi vulnera

🏢 Joomla 📅 9.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-56291 - Joomla Extension - balbooa.com - Unauthenticated file upload in Balbooa Forms extension < 2.4.1 - Th

🏢 Joomla 📅 9.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-56290 - Joomla Extension - joomlack.fr - Unauthenticated file upload in Page Builder CK extension < 3.6.0 -

🏢 Joomla 📅 29.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-49049 - The Helix3 plugin for Joomla exposes an ajax handler task, that allows unauthenticated attackers to

🏢 Joomla 📅 29.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-49048 - The Joomla extension JoomCCK exposes a front-end controller task, that builds two SQL statements by

🏢 Joomla 📅 28.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-48943 - K2 ≤ 2.24 contains a mass-assignment defect in the K2 system user plugin `plg_user_k2`. A Registered

🏢 Joomla 📅 25.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-48940 - A Joomla user with K2 "create item" rights (Author tier by default) can submit an article whose `emb

🏢 Joomla 📅 25.6.2026 📊 CVSS: 3.4
3.4

CVE-2026-48939 - A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the fil

🏢 Joomla 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-48908 - A vulnerability in SP Page Builder for Joomla allows unauthenticated users to upload arbitrary files

🏢 Joomla 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2023-54357 - Joomla com_booking component 2.4.9 contains an information disclosure vulnerability that allows unau

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2019-25762 - Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows u

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2019-25761 - Joomla! Component JoomCRM 1.1.1 contains an SQL injection vulnerability that allows authenticated at

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2019-25760 - Joomla! Component Easy Shop 1.2.3 contains a local file inclusion vulnerability that allows unauthen

🏢 Joomla 📅 19.6.2026 📊 CVSS: 6.2
6.2

CVE-2019-25759 - Joomla! Component vBizz 1.0.7 contains an SQL injection vulnerability that allows authenticated atta

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2019-25758 - Joomla! Component vBizz 1.0.7 contains an unrestricted file upload vulnerability that allows authent

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.8
8.8

CVE-2019-25757 - Joomla vWishlist 1.0.1 contains an SQL injection vulnerability that allows authenticated attackers t

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2019-25756 - Joomla! Component vAccount 2.0.2 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25755 - Joomla Component vReview 1.9.11 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25754 - Joomla Component vRestaurant 1.9.4 contains an SQL injection vulnerability that allows unauthenticat

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25753 - Joomla! Component VMap 1.9.6 contains an SQL injection vulnerability that allows unauthenticated att

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25752 - Joomla! Component J-BusinessDirectory 4.9.7 contains an SQL injection vulnerability that allows unau

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25751 - Joomla Component J-ClassifiedsManager 3.0.5 contains an SQL injection vulnerability that allows unau

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25750 - Joomla Component J-MultipleHotelReservation 6.0.7 contains an SQL injection vulnerability that allow

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25749 - Joomla J-CruisePortal 6.0.4 contains an SQL injection vulnerability that allows authenticated attack

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2019-25748 - Joomla JHotelReservation 6.0.7 contains an SQL injection vulnerability that allows unauthenticated a

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20282 - Joomla! Component jCart for OpenCart 2.0 contains an SQL injection vulnerability that allows unauthe

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20281 - Joomla! Component Extra Search 2.2.8 contains an SQL injection vulnerability that allows unauthentic

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20280 - Joomla Component Myportfolio 3.0.2 contains an SQL injection vulnerability that allows unauthenticat

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20279 - Joomla Payage 2.05 contains an SQL injection vulnerability that allows unauthenticated attackers to

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20278 - Joomla Component JoomRecipe 1.0.3 contains an SQL injection vulnerability that allows unauthenticate

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20277 - Joomla JoomRecipe 1.0.4 component contains a blind SQL injection vulnerability in the search_author

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20276 - Joomla! Component SIMGenealogy 2.1.5 contains an SQL injection vulnerability that allows unauthentic

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20275 - Joomla! Component PHP-Bridge 1.2.3 contains an SQL injection vulnerability that allows unauthenticat

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20274 - Joomla LMS King Professional 3.2.4.0 contains an SQL injection vulnerability that allows unauthentic

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20273 - Joomla Event Registration Pro Calendar 4.1.3 contains an SQL injection vulnerability that allows una

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20272 - Joomla Ultimate Property Listing 1.0.2 contains an SQL injection vulnerability that allows unauthent

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20271 - Joomla StreetGuessr Game 1.1.8 contains an SQL injection vulnerability that allows unauthenticated a

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20270 - Joomla! Component Twitch Tv 1.1 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20269 - Joomla! Component KissGallery 1.0.0 contains an SQL injection vulnerability that allows unauthentica

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20268 - Joomla! Component Zap Calendar Lite 4.3.4 contains an SQL injection vulnerability that allows unauth

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20267 - Joomla! Component Calendar Planner 1.0.1 contains an SQL injection vulnerability that allows unauthe

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20266 - Joomla SP Movie Database 1.3 contains an SQL injection vulnerability that allows unauthenticated att

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20265 - Joomla! Component Flip Wall 8.0 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2017-20264 - Joomla! Component Sponsor Wall 8.0 contains an SQL injection vulnerability that allows unauthenticat

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2017-20263 - Joomla! Component FocalPoint Pro/Free 1.2.3 contains an SQL injection vulnerability that allows unau

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20262 - Joomla! Component Ajax Quiz 1.8 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20261 - Joomla! Component Bargain Product VM3 1.0 contains an SQL injection vulnerability that allows unauth

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20260 - Joomla! Component Price Alert 3.0.2 contains an SQL injection vulnerability that allows unauthentica

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20259 - Joomla OSDownloads 1.7.4 contains an SQL injection vulnerability that allows unauthenticated attacke

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20258 - Joomla! Component RPC Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20257 - Joomla! Component Quiz Deluxe 3.7.4 contains an SQL injection vulnerability that allows unauthentica

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20256 - Joomla Survey Force Deluxe 3.2.4 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20255 - Joomla! Component JB Visa 1.0 contains an SQL injection vulnerability that allows unauthenticated at

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20254 - Joomla! Component User Bench 1.0 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20253 - Joomla! Component My Projects 2.0 contains an SQL injection vulnerability that allows unauthenticate

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2017-20252 - Joomla NextGen Editor 2.1.0 contains an SQL injection vulnerability that allows unauthenticated atta

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-48907 - A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles fo

🏢 Joomla 📅 5.6.2026 📊 CVSS: 9.8
9.8

CVE-2019-25740 - Joomla com_jsjobs 1.2.6 contains an arbitrary file deletion vulnerability that allows authenticated

🏢 Joomla 📅 4.6.2026 📊 CVSS: 6.5
6.5

CVE-2025-15656 - Incorrect Privilege Assignment vulnerability in Mojoomla School Management allows Privilege Escalati

🏢 Joomla 📅 3.6.2026 📊 CVSS: 8.8
8.8

CVE-2025-15655 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Joomla 📅 3.6.2026 📊 CVSS: 7.6
7.6

CVE-2018-25433 - Joomla Component JE Photo Gallery 1.1 contains an SQL injection vulnerability that allows unauthenti

🏢 Joomla 📅 1.6.2026 📊 CVSS: 8.2
8.2

CVE-2018-25381 - Joomla Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows authenticated

🏢 Joomla 📅 25.5.2026 📊 CVSS: 7.1
7.1

CVE-2018-25380 - Joomla Component eXtroForms 2.1.5 contains an SQL injection vulnerability that allows authenticated

🏢 Joomla 📅 25.5.2026 📊 CVSS: 7.1
7.1

CVE-2018-25354 - Joomla Component jomres 9.11.2 contains a cross-site request forgery vulnerability that allows attac

🏢 Joomla 📅 23.5.2026 📊 CVSS: 4.3
4.3

CVE-2018-25351 - Joomla! Component EkRishta 2.10 contains an error-based SQL injection vulnerability that allows unau

🏢 Joomla 📅 23.5.2026 📊 CVSS: 8.2
8.2

CVE-2018-25348 - Joomla! Component Ek Rishta 2.10 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 23.5.2026 📊 CVSS: 8.2
8.2

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.