Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
joomla! cms vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2023-23754
An issue exists in Joomla! 4.2.0 up to and including 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.
Joomla! Project Joomla! Cms
Joomla Joomla!
7.5
CVSSv3
CVE-2023-23755
An issue exists in Joomla! 4.2.0 up to and including 4.3.1. The lack of rate limiting allowed brute force attacks against MFA methods.
Joomla! Project Joomla! Cms
Joomla Joomla!
NA
CVE-2024-27185
The pagination class includes arbitrary parameters in links, leading to cache poisoning attack vectors.
Joomial Project Joomial Cms
Joomla! Project Joomla! Cms
6.8
CVSSv2
CVE-2006-5096
Multiple cross-site scripting (XSS) vulnerabilities in index.php in VirtueMart (formerly known as mambo-phpShop) Joomla! eCommerce Edition CMS 1.0.11, and possibly earlier, allow remote malicious users to inject arbitrary web script or HTML via the Itemid parameter in a (1) com_c...
Virtuemart Virtuemart Joomla Ecommerrce Edition Cms
1 EDB exploit
6.7
CVSSv4
CVE-2025-22207
Improperly built order clauses lead to a SQL injection vulnerability in the backend task list of com_scheduler.
Joomla! Project Joomla! Cms
7.1
CVSSv4
CVE-2025-22213
Inadequate checks in the Media Manager allowed users with "edit" privileges to change file extension to arbitrary extension, including .php and other potentially executable extensions.
Joomla! Project Joomla! Cms
6.1
CVSSv3
CVE-2024-40747
Various module chromes didn't properly process inputs, leading to XSS vectors.
Joomla! Project Joomla! Cms
7.5
CVSSv3
CVE-2024-40748
Lack of output escaping in the id attribute of menu lists.
Joomla! Project Joomla! Cms
7.5
CVSSv3
CVE-2024-40749
Improper Access Controls allows access to protected views.
Joomla! Project Joomla! Cms
6.5
CVSSv3
CVE-2024-21726
Inadequate content filtering leads to XSS vulnerabilities in various components.
Joomla! Project Joomla! Cms
1 Article
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
path traversal
CVE-2025-2657
CVE-2025-30066
CVE-2025-24813
apache commons vfs
CVE-2025-2478
validation
CVE-2025-2674
code injection
medical card generation system
microsoft edge (chromium-based)
CVE-2025-2688
cicadascms
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »