Exposição de Joomla
CMS393
score de exposição
100.048
sites usam
2
em exploração
24
críticos
CVEs
216 resultadosCVE-2025-54299CRITICALExtension - nobossextensions.com - Stored XSS vulnerability in No Boss Testimonials component 1.0.0-3.0.0 and 4.0.0-4.0.2 for JoomlaEPSS 0.4%CVE-2025-54298CRITICALExtension - firecoders.com - Stored XSS vulnerability in CommentBox component 1.0.0-1.1.0 for JoomlaEPSS 0.4%CVE-2025-50056MEDIUMExtension - rsjoomla.com - Reflected XSS vulnerability RSMail! component 1.19.20-1.22.28 for JoomlaEPSS 0.4%CVE-2025-50057MEDIUMExtension - rsjoomla.com - DOS vulnerability RSFiles! component 1.16.3-1.17.7 for JoomlaEPSS 0.4%CVE-2025-26854CRITICALExtension - joomcar.net - SQL injection in Articles Good Search 1.0.0 - 1.2.4.0011 for JoomlaEPSS 0.4%CVE-2025-26855CRITICALExtension - joomcar.net - SQL injection in Articles Calendar 1.0.0 - 1.0.1.0007 for JoomlaEPSS 0.4%CVE-2023-28733HIGHStored XSS affecting the AcyMailing plugin for Joomla EPSS 0.4%CVE-2026-21626CRITICALExtension - stackideas.com - Information disclosure in post custom fields in EasyDiscuss 1.0.0-5.0.15 for JoomlaEPSS 0.4%CVE-2024-40749HIGH[20250103] - Core - Read ACL violation in multiple core viewsEPSS 0.4%CVE-2025-50058MEDIUMExtension - rsjoomla.com - Stored XSS vulnerability in RSDirectory! component 1.16.3-1.17.7 for JoomlaEPSS 0.4%CVE-2022-27913—[20221002] - Core - RXSS through reflection of user input in headingsEPSS 0.4%CVE-2025-54473CRITICALExtension - phoca.cz - Authenticated RCE vulnerability in Phoca Commander component 1.0.0-4.0.0 and 5.0.0-5.0.1 for JoomlaEPSS 0.4%CVE-2024-27187HIGH[20240804] - Core - Improper ACL for backend profile viewEPSS 0.4%CVE-2026-35223HIGHJoomla! Core - [20260508] - Improper access check in com_config webservice endpointsEPSS 0.3%CVE-2023-39971—Extension - acymailing.com - XSS in AcyMailing Enterprise component for Joomla 6.7.0-8.6.3EPSS 0.3%CVE-2026-21625MEDIUMExtension - stackideas.com - Lack of mime type validation in EasyDiscuss component 1.0.0-5.0.15 for JoomlaEPSS 0.3%CVE-2023-54357HIGHJoomla com_booking 2.4.9 Information Disclosure via Account EnumerationEPSS 0.3%CVE-2026-21630MEDIUMJoomla! Core - [20260302] - SQL injection in com_content articles webservice endpointEPSS 0.3%CVE-2025-25227HIGH[20250402] - Joomla Core - MFA Authentication BypassEPSS 0.3%CVE-2025-22211LOWExtension - webdesigner-profi.de - SQL injection in JoomShopping component version 1.0.0 - 5.5.5 for JoomlaEPSS 0.3%
Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →