Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
6.1
CVE-2026-101111
- EPSS 0.26%
- Veröffentlicht 28.09.2026 18:48:04
- Zuletzt bearbeitet 01.10.2026 16:01:59
Joomla Extension - ordasoft.com - Reflected Cross-Site Scripting in Book Library (Free) < 6.4.6 - The public book-detail page template, site/views/view_book/tmpl/default.php, echoes the raw title request parameter directly into a double-quoted HTML a...
9.8
CVE-2026-101110
- EPSS 0.28%
- Veröffentlicht 28.09.2026 18:42:33
- Zuletzt bearbeitet 07.10.2026 21:02:05
Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Book Library (Free) < 6.4.6 - site/booklibrary.php’s books() function reads the field and direction request parameters and passes each through a function called protectInjectionWithou...
1