Vulnerabilities
Vulnerable Software
Joomla:  >> Joomla!  >> 4.0.6  Security Vulnerabilities
Improperly built order clauses lead to a SQL injection vulnerability in the articles webservice endpoint.
CVSS Score
6.9
EPSS Score
0.003
Published
2026-04-01
Lack of input filtering leads to an XSS vector in the HTML filter code related to data URLs in img tags.
CVSS Score
5.9
EPSS Score
0.002
Published
2026-01-06
Lack of output escaping leads to a XSS vector in the pagebreak plugin.
CVSS Score
5.9
EPSS Score
0.002
Published
2026-01-06
Insufficient state checks lead to a vector that allows to bypass 2FA checks.
CVSS Score
7.5
EPSS Score
0.004
Published
2025-04-08
Various module chromes didn't properly process inputs, leading to XSS vectors.
CVSS Score
6.1
EPSS Score
0.003
Published
2025-01-07
Lack of output escaping in the id attribute of menu lists.
CVSS Score
7.5
EPSS Score
0.004
Published
2025-01-07
Improper Access Controls allows access to protected views.
CVSS Score
7.5
EPSS Score
0.004
Published
2025-01-07
The stripImages and stripIframes methods didn't properly process inputs, leading to XSS vectors.
CVSS Score
6.1
EPSS Score
0.003
Published
2024-08-20
Inadequate validation of URLs could result into an invalid check whether an redirect URL is internal or not..
CVSS Score
6.1
EPSS Score
0.003
Published
2024-08-20
The pagination class includes arbitrary parameters in links, leading to cache poisoning attack vectors.
CVSS Score
9.1
EPSS Score
0.004
Published
2024-08-20


Contact Us

Shodan ® - All rights reserved