• Joomla!®
    • About us
    • Joomla Home
    • What is Joomla?
    • Benefits & Features
    • Project & Leadership
    • Trademark & Licensing
    • The Joomla Foundation
    • Support us
    • Contribute
    • Sponsor
    • Partner
    • Shop
  • Download & Extend
    • Downloads
    • Extensions
    • Languages
    • Get a free site
    • Get a domain
  • Discover & Learn
    • Documentation
    • Training
    • Certification
    • Site Showcase
    • Announcements
    • Blogs
    • Magazine
  • Community & Support
    • Community Portal
    • Events
    • User Groups
    • Forum
    • Service Providers Directory
    • Volunteers Portal
    • Vulnerable Extensions List
  • Developer Resources
    • Developer Network
    • Security Centre
    • Issue Tracker
    • GitHub
    • API Documentation
    • Joomla! Framework

Joomla! Extensions Directory™

Download
Launch
  • Home
  • Browse Extensions
    • Top Rated
    • Most Reviewed
    • New
    • Recently Updated
    • Compatible with J4
    • Compatible with J5
    • Compatible with J5 (with b/c plugin)
  • Search
  • Community
    • Meet the JED Team
    • Blog
    • JED Newsletter
    • Terms of Service
    • Help Joomla!
  • Support
    • Knowledgebase
    • Sponsor Joomla!
  • Vulnerable Extensions
    • About
    • Vulnerable Extensions
    • Resolved Extensions
    • Abandoned Extensions
    • Submit a Report
    • Submit an Update
    • Submit AbandonWare
    • JSON Feed
  • Log in
  • Register
  • Home
  • Vulnerable Extensions
  • Resolved Extensions

Resolved Extensions

This category lists vulnerable versions of extensions for which a patch exists. If your site uses a vulnerable version of an extension listed here, then you are recommended to update.

Filters
List of articles in category Resolved Extensions
Title Published Date
SP Movie Database 1.3, SQL Injection 29 August 2017
Zap Calendar, 4.3.6 and previous, SQL Injection 26 August 2017
Calendar Planner 1.0.1 - SQL Injection 23 August 2017
Extplorer, 2.1.9 and previous, Directory Traversal 04 August 2017
IJSEO, 3.1.17, SQL Injection 14 July 2017
Cookie consent from silktide, Unknown version, Other 10 July 2017
easysocial, 2.0.18 and below 01 July 2017
JoomRecipe,1.0.3,SQL Injection 24 June 2017
Joomla Payage, 2.05, SQL Injection 15 June 2017
Vik Appointments 1.4 and previous 05 June 2017
Vik Rent Items 1.3 and previous 05 June 2017
Vik Rent Car 1.10 and previous 05 June 2017
HikaShop Business,3.1.0,SQL Injection 01 June 2017
Kunena 5.0.8 and previous XSS 26 May 2017
Myportfolio,3.0.2,SQL Injection 04 May 2017
Joomla Modern Booking,1.0,SQL Injection 09 April 2017
JobGrok,versions 3.1, SQL Injection 03 April 2017
Membership Pro and other OS Solution extensions 22 March 2017
OrdaSoft CCK,2.0.4,SQL Injection 20 March 2017
AppointmentBookingPro,4.0.1,SQL Injection 16 March 2017
JMultipleHotelReservation, 6.0.3, SQL Injection 15 March 2017
OS Property,3.0.9,SQL Injection 13 March 2017
OS Services Booking,2.5.1,SQL Injection 13 March 2017
Joomloc-lite by joomloc.fr,1.3.3,SQL Injection 13 March 2017
J-Business Directory by CMS Junkie, 4.6.8, SQL Injection 13 March 2017

Page 7 of 11

  • 2
  • 3
  • ...
  • 5
  • 6
  • 7
  • 8
  • 9
  • ...
  • 11
Vulnerable Extensions
  • EasyDiscuss by Stackideas,, , SQL Injection
  • JEVents, 3.6.87, SQL Injection
  • osTicky2, , Other
  • EasyShop, 1.4.1, XSS (Cross Site Scripting)
  • LivingWord, , XSS (Cross Site Scripting)
  • Plugin Creative Gallery , , SQL Injection
  • Proforms Basic via sort_order parameter, , SQL Injection
  • EXTPLORER, 2.1.15, XSS (Cross Site Scripting)
  • admirror gallery, , XSS (Cross Site Scripting)
  • Proforms Basic Joomla Module, , Other
Resolved Extensions
  • Novarain/Tassos Framework, , SQL Injection
  • jDownloads v4.0.47, jDownloads v4.0.47, Other
  • Quantum Manager v. 3.2.0, Quantum Manager v. 3.2.0, Other
  • Convert Forms, 4.4.10, XSS (Cross Site Scripting)
  • JS Jobs, 1.4.2, SQL Injection
  • Regularlabs Sourcer, pre version 12.00, Other/RFI
  • HikaShop, 5.1.1, XSS (Cross Site Scripting)
  • Advanced custom fields, 2.7.7, SQL Injection
  • Phoca Gallery, 5.0.0, XSS (Cross Site Scripting)
  • HikaShop Starter 4.7.5 [2308101603], HikaShop Starter 4.7.5 [2308101603], XSS (Cross Site Scripting)

  • Joomla! on Twitter
  • Joomla! on Facebook
  • Joomla! on YouTube
  • Joomla! on LinkedIn
  • Joomla! on Pinterest
  • Joomla! on Instagram
  • Joomla! on GitHub
  • Home
  • About
  • Community
  • Forum
  • Extensions
  • Services
  • Docs
  • Developer
  • Shop
  • Accessibility Statement
  • Privacy Policy
  • Cookie Policy
  • Sponsor Joomla! with $5
  • Help Translate
  • Report an Issue
  • Log in

© 2005 - 2026 Open Source Matters, Inc. All Rights Reserved.

Rochen
Joomla! Hosting by Rochen
× We have detected that you are using an ad blocker. The Joomla! Project relies on revenue from these advertisements so please consider disabling the ad blocker for this domain.