Where
AND
-Infinity
0

Joomla Joomla\!Joomla! Core - [20260511] - MFA Authentication Bypass

Risk 43
Severity
8.2
First published (updated )

Joomla Joomla\!Joomla! Core - [20260509] - LFI in HTMLView layout parameter

Risk 86
Severity
7.5
First published (updated )

Joomla Joomla\!Joomla! Core - [20260512] - MFA Authentication Bypass

Risk 43
Severity
8.2
First published (updated )

Joomla Joomla\!Joomla! Core - [20260508] - Improper access check in com_config webservice endpoints

Risk 86
Severity
8.6
First published (updated )

Joomla Joomla\!Joomla! Core - [20260514] - Privilege escalation through com_users webservice endpoints

Risk 86
Severity
8.2
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Joomla Joomla\!Joomla! Core - [20260513] - Privilege escalation through com_users batch task

Risk 86
Severity
8.2
First published (updated )

Joomla Joomla\!Joomla! Core - [20260517] - Incorrect Cache Key Construction for InputFilter objects

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\!Joomla! Core - [20260305] - Arbitrary file deletion in com_joomlaupdate

Risk 72
Severity
8.6
First published (updated )

Joomla Joomla\!Joomla! Core - [20260306] - Improper access check in webservice endpoints

Risk 79
Severity
8.6
First published (updated )

composer/joomla/archive[20220301] - Core - Zip Slip within the Tar extractor

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Joomla Joomla\![20210704] - Core - Privilege escalation through com_installer

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\![20210702] - Core - DoS through usergroup table manipulation

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\![20210305] - Core - Input validation within the template manager

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\![20210306] - Core - com_media allowed paths that are not intended for image uploads

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\![20201102] - Core - Disclosure of secrets in Global Configuration page

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Joomla Joomla\![20201103] - Core - Path traversal in mod_random_image

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\![20201101] - Core - com_finder ignores access levels on autosuggest

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\![20201107] - Core - Write ACL violation in multiple core views

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\!CSRF

Risk 77
Severity
8.8
First published (updated )

Joomla Joomla\!CSRF

Risk 77
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Joomla Joomla\!Joomla! before 2.5.3 allows Admin Account Creation.

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\!Joomla! core before 2.5.3 allows unauthorized password change.

Risk 43
Severity
7.5
First published (updated )

Joomla Joomla\!Malicious File Upload

Risk 70
Severity
7.5
First published (updated )

Joomla Joomla\!An issue was discovered in Joomla! Core before 3.8.8. Inadequate checks allowed users to modify the …

Risk 79
Severity
8.8
First published (updated )

Joomla Joomla\!SQL Injection

Risk 79
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Joomla Joomla\!The CMS installer in Joomla! before 3.7.4 does not verify a user's ownership of a webspace, which al…

Risk 79
Severity
8.8
First published (updated )

Joomla Joomla\!Joomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to authenticate and byp…

Risk 52
Severity
7.5
First published (updated )

Joomla Joomla\!SQL Injection

Risk 52
Severity
7.5
First published (updated )

Joomla Joomla\!SQL Injection

Risk 52
Severity
7.5
First published (updated )

Joomla Joomla\!Joomla! 1.5.x before 1.5.26 has unspecified impact and attack vectors related to "insufficient rando…

Risk 52
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203