• Joomla!®
    • About us
    • Joomla Home
    • What is Joomla?
    • Benefits & Features
    • Project & Leadership
    • Trademark & Licensing
    • The Joomla Foundation
    • Support us
    • Contribute
    • Sponsor
    • Partner
    • Shop
  • Download & Extend
    • Downloads
    • Extensions
    • Languages
    • Get a free site
    • Get a domain
  • Discover & Learn
    • Documentation
    • Training
    • Certification
    • Site Showcase
    • Announcements
    • Blogs
    • Magazine
  • Community & Support
    • Community Portal
    • Events
    • User Groups
    • Forum
    • Service Providers Directory
    • Volunteers Portal
    • Vulnerable Extensions List
  • Developer Resources
    • Developer Network
    • Security Centre
    • Issue Tracker
    • GitHub
    • API Documentation
    • Joomla! Framework

Joomla! Extensions Directory™

Download
Launch
  • Home
  • Browse Extensions
    • Top Rated
    • Most Reviewed
    • New
    • Recently Updated
    • Compatible with J4
    • Compatible with J5
    • Compatible with J5 (with b/c plugin)
  • Search
  • Community
    • Meet the JED Team
    • Blog
    • JED Newsletter
    • Terms of Service
    • Help Joomla!
  • Support
    • Knowledgebase
    • Sponsor Joomla!
  • Vulnerable Extensions
    • About
    • Vulnerable Extensions
    • Resolved Extensions
    • Abandoned Extensions
    • Submit a Report
    • Submit an Update
    • Submit AbandonWare
    • JSON Feed
  • Log in
  • Register
  • Home
  • Vulnerable Extensions
  • Resolved Extensions

Resolved Extensions

This category lists vulnerable versions of extensions for which a patch exists. If your site uses a vulnerable version of an extension listed here, then you are recommended to update.

Filters
List of articles in category Resolved Extensions
Title Published Date
OS Property,3.0.9,SQL Injection 13 March 2017
OS Services Booking,2.5.1,SQL Injection 13 March 2017
Joomloc-lite by joomloc.fr,1.3.3,SQL Injection 13 March 2017
J-Business Directory by CMS Junkie, 4.6.8, SQL Injection 13 March 2017
Alta User Points,1.1.7,SQL Injection 10 March 2017
Vehicle Manager,3.9.4,SQL Injection 09 March 2017
Real Estate Manager,3.9.7,SQL Injection 09 March 2017
MediaLibrary,3.5.4, SQL Injection 09 March 2017
BookLibrary,3.6.14,SQL Injection 09 March 2017
UserExtranet,1.3.2,SQL Injection 08 March 2017
Street Guesser,1.1.7,SQL Injection 07 March 2017
One Vote,1.1.1,SQL Injection 06 March 2017
community quiz,4.4.1,SQL Injection 06 March 2017
JO Facebook gallery,4.5,SQL Injection 06 March 2017
Canonical Url,4.1.1,SQL Injection 06 March 2017
GPS Tools v4.0.1,4.0.1,SQL Injection 26 February 2017
Joomloc-CAT, version 4.1.3, SQL injection 20 February 2017
JomWall, 4.1.1,SQL Injection 20 February 2017
Jtag Calendar 6.2.4 09 February 2017
Community Builder versions 2.1 and previous 18 January 2017
Kunena, 5.0.2 and newer, XSS (Cross Site Scripting) 04 January 2017
Jomres 9.8.22 and previous PHPMailer vulnerability 31 December 2016
Chronoforms 5.0.13 PHP mailer vulnerability 30 December 2016
AcyMailing 5.6.0 PHP Mailer vulnerability 28 December 2016
Chronoforms 5.0.12 PHP mailer vulnerability 27 December 2016

Page 8 of 11

  • 2
  • 3
  • ...
  • 5
  • 6
  • 7
  • 8
  • 9
  • ...
  • 11
Vulnerable Extensions
  • JEVents, 3.6.87, SQL Injection
  • osTicky2, , Other
  • EasyShop, 1.4.1, XSS (Cross Site Scripting)
  • LivingWord, , XSS (Cross Site Scripting)
  • Plugin Creative Gallery , , SQL Injection
  • Proforms Basic via sort_order parameter, , SQL Injection
  • EXTPLORER, 2.1.15, XSS (Cross Site Scripting)
  • admirror gallery, , XSS (Cross Site Scripting)
  • Proforms Basic Joomla Module, , Other
  • acymailing, pre 8.7.0 , Other
Resolved Extensions
  • jDownloads v4.0.47, jDownloads v4.0.47, Other
  • Quantum Manager v. 3.2.0, Quantum Manager v. 3.2.0, Other
  • Convert Forms, 4.4.10, XSS (Cross Site Scripting)
  • JS Jobs, 1.4.2, SQL Injection
  • Regularlabs Sourcer, pre version 12.00, Other/RFI
  • HikaShop, 5.1.1, XSS (Cross Site Scripting)
  • Advanced custom fields, 2.7.7, SQL Injection
  • Phoca Gallery, 5.0.0, XSS (Cross Site Scripting)
  • HikaShop Starter 4.7.5 [2308101603], HikaShop Starter 4.7.5 [2308101603], XSS (Cross Site Scripting)
  • LazyDbBackup, 3.9.0, Other

  • Joomla! on Twitter
  • Joomla! on Facebook
  • Joomla! on YouTube
  • Joomla! on LinkedIn
  • Joomla! on Pinterest
  • Joomla! on Instagram
  • Joomla! on GitHub
  • Home
  • About
  • Community
  • Forum
  • Extensions
  • Services
  • Docs
  • Developer
  • Shop
  • Accessibility Statement
  • Privacy Policy
  • Cookie Policy
  • Sponsor Joomla! with $5
  • Help Translate
  • Report an Issue
  • Log in

© 2005 - 2026 Open Source Matters, Inc. All Rights Reserved.

Rochen
Joomla! Hosting by Rochen
× We have detected that you are using an ad blocker. The Joomla! Project relies on revenue from these advertisements so please consider disabling the ad blocker for this domain.