Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
joomla! project joomla! cms vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2023-23754
An issue exists in Joomla! 4.2.0 up to and including 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.
Joomla! Project Joomla! Cms
Joomla Joomla!
7.5
CVSSv3
CVE-2023-23755
An issue exists in Joomla! 4.2.0 up to and including 4.3.1. The lack of rate limiting allowed brute force attacks against MFA methods.
Joomla! Project Joomla! Cms
Joomla Joomla!
6.1
CVSSv3
CVE-2024-21724
Inadequate input validation for media selection fields lead to XSS vulnerabilities in various extensions.
Joomla! Project Joomla! Cms
Joomla Joomla!
1 Article
NA
CVE-2024-27185
The pagination class includes arbitrary parameters in links, leading to cache poisoning attack vectors.
Joomial Project Joomial Cms
Joomla! Project Joomla! Cms
6.1
CVSSv3
CVE-2024-40747
Various module chromes didn't properly process inputs, leading to XSS vectors.
Joomla! Project Joomla! Cms
7.5
CVSSv3
CVE-2024-40748
Lack of output escaping in the id attribute of menu lists.
Joomla! Project Joomla! Cms
7.5
CVSSv3
CVE-2024-40749
Improper Access Controls allows access to protected views.
Joomla! Project Joomla! Cms
6.5
CVSSv3
CVE-2024-21726
Inadequate content filtering leads to XSS vulnerabilities in various components.
Joomla! Project Joomla! Cms
1 Article
6.7
CVSSv4
CVE-2025-22207
Improperly built order clauses lead to a SQL injection vulnerability in the backend task list of com_scheduler.
Joomla! Project Joomla! Cms
7.1
CVSSv4
CVE-2025-22213
Inadequate checks in the Media Manager allowed users with "edit" privileges to change file extension to arbitrary extension, including .php and other potentially executable extensions.
Joomla! Project Joomla! Cms
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
ssl.com
CVE-2025-3278
CVE-2025-24054
brute force
firewall
privilege escalation
CVE-2025-24914
qriouslad
CVE-2025-42599
pritunl
namelessmc
CVE-2025-3103
CVE-2025-43895
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »