Joomla

Joomla!

158 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.52%
  • Veröffentlicht 15.07.2020 16:15:11
  • Zuletzt bearbeitet 21.11.2024 05:06:02

An issue was discovered in Joomla! through 3.9.19. A missing token check in the ajax_install endpoint of com_installer causes a CSRF vulnerability.

  • EPSS 0.71%
  • Veröffentlicht 02.06.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:47

In Joomla! before 3.9.19, missing token checks in com_postinstall lead to CSRF.

  • EPSS 0.99%
  • Veröffentlicht 02.06.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:48

In Joomla! before 3.9.19, lack of input validation in the heading tag option of the "Articles - Newsflash" and "Articles - Categories" modules allows XSS.

  • EPSS 0.99%
  • Veröffentlicht 02.06.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:48

In Joomla! before 3.9.19, incorrect input validation of the module tag option in com_modules allows XSS.

  • EPSS 1.33%
  • Veröffentlicht 02.06.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:48

In Joomla! before 3.9.19, the default settings of the global textfilter configuration do not block HTML inputs for Guest users.

  • EPSS 0.76%
  • Veröffentlicht 21.04.2020 17:15:12
  • Zuletzt bearbeitet 21.11.2024 04:58:50

An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized deletion of usergroups.

  • EPSS 2.76%
  • Veröffentlicht 21.04.2020 17:15:12
  • Zuletzt bearbeitet 21.11.2024 04:58:50

An issue was discovered in Joomla! before 3.9.17. Improper input validations in the usergroup table class could lead to a broken ACL configuration.

  • EPSS 0.8%
  • Veröffentlicht 21.04.2020 17:15:12
  • Zuletzt bearbeitet 21.11.2024 04:58:50

An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized editing of usergroups.

  • EPSS 4.86%
  • Veröffentlicht 16.03.2020 16:15:13
  • Zuletzt bearbeitet 21.11.2024 04:55:02

An issue was discovered in Joomla! before 3.9.16. Various actions in com_templates lack the required ACL checks, leading to various potential attack vectors.

  • EPSS 2.73%
  • Veröffentlicht 16.03.2020 16:15:13
  • Zuletzt bearbeitet 21.11.2024 04:55:02

An issue was discovered in Joomla! before 3.9.16. Incorrect Access Control in the SQL fieldtype of com_fields allows access for non-superadmin users.