Vulnerabilities in themexpert.com
10 resultsVexday analysis
Themexpert.com apresenta 10 vulnerabilidades catalogadas, todas publicadas nos últimos 90 dias, indicando descobertas recentes em seu portfólio. Embora nenhuma esteja sob exploração ativa conhecida (KEV), 2 atingem nível crítico e a fraqueza dominante é injeção de script (CWE-79), exigindo atenção imediata na validação de entrada. O risco é moderado mas em trajetória ascendente pela concentração temporal das divulgações.
CVE-2026-60027HIGHJoomla Extension - themexpert.com - Unauthenticated path traversal / file read in Quix Page Builder < 6.2.1EPSS 0.3%CVE-2026-60026HIGHJoomla Extension - themexpert.com - Authenticated PHP code execution in Quix Page Builder < 6.2.1EPSS 0.3%CVE-2026-60031MEDIUMJoomla Extension - themexpert.com - Information disclosure in Quix Page Builder < 6.2.1EPSS 0.3%CVE-2026-60028HIGHJoomla Extension - themexpert.com - Authenticated stored XSS in Quix Page Builder < 6.2.1EPSS 0.2%CVE-2026-60034CRITICALJoomla Extension - themexpert.com - Authenticated stored XSS in JMedia Extension < 1.6.0EPSS 0.2%CVE-2026-60029MEDIUMJoomla Extension - themexpert.com - Authenticated stored XSS in Quix Page Builder < 6.2.1EPSS 0.2%CVE-2026-60032CRITICALJoomla Extension - themexpert.com - Authenticated arbitrary file upload in JMedia < 1.6.0EPSS 0.2%CVE-2026-60030HIGHJoomla Extension - themexpert.com - Broken Access Control for media management in Quix Page Builder < 6.2.1EPSS 0.2%CVE-2026-58078HIGHJoomla Extension - themexpert.com - Unauthenticated SQL injection in Quix Page Builder Pro < 6.2.1EPSS 0.2%CVE-2026-60033MEDIUMJoomla Extension - themexpert.com - SSRF via remote download in JMedia Extension < 1.6.0EPSS 0.2%