Joomla!
®
About us
Joomla Home
What is Joomla?
Benefits & Features
Project & Leadership
Trademark & Licensing
The Joomla Foundation
Support us
Contribute
Sponsor
Partner
Shop
Download & Extend
Downloads
Extensions
Languages
Get a free site
Get a domain
Discover & Learn
Documentation
Training
Certification
Site Showcase
Announcements
Blogs
Magazine
Community & Support
Community Portal
Events
User Groups
Forum
Service Providers Directory
Volunteers Portal
Vulnerable Extensions List
Developer Resources
Developer Network
Security Centre
Issue Tracker
GitHub
API Documentation
Joomla!
Framework
Joomla! Extensions Directory™
Download
Launch
Home
Browse Extensions
Top Rated
Most Reviewed
New
Recently Updated
Compatible with J4
Compatible with J5
Compatible with J5 (with b/c plugin)
Search
Community
Meet the JED Team
Blog
JED Newsletter
Terms of Service
Help Joomla!
Support
Knowledgebase
Sponsor Joomla!
Vulnerable Extensions
About
Vulnerable Extensions
Resolved Extensions
Abandoned Extensions
Submit a Report
Submit an Update
Submit AbandonWare
JSON Feed
Log in
Register
Home
Vulnerable Extensions
Vulnerable Extensions
Vulnerable Extensions
This category lists vulnerable extensions for which no patch is known to exists. You are recommended to uninstall any listed here from your site.
Patched extensions are moved to the Resolved category
.
Filters
Title Filter
Display #
5
10
15
20
25
30
50
100
All
Filter
List of articles in category Vulnerable Extensions
Title
Published Date
ZiMB Manager
20 February 2013
Matamko
20 February 2013
Multiple Root
20 February 2013
Multiple Map
20 February 2013
Contact Us Draw Root Map
20 February 2013
iF surfALERT
20 February 2013
GBU FACEBOOK
20 February 2013
jnewspaper
20 February 2013
MT Fire Eagle
20 February 2013
Sweetykeeper
20 February 2013
Page 22 of 24
15
16
17
18
...
20
21
22
23
24
VEL Search
Search
Search
Vulnerable Extensions
EasyShop, 1.4.1, XSS (Cross Site Scripting)
LivingWord, , XSS (Cross Site Scripting)
Plugin Creative Gallery , , SQL Injection
Proforms Basic via sort_order parameter, , SQL Injection
Virtual Classroom, , SQL Injection
EXTPLORER, 2.1.15, XSS (Cross Site Scripting)
LM-CUSTOM-ADMIN, , Other
admirror gallery, , XSS (Cross Site Scripting)
Proforms Basic Joomla Module, , Other
bagallery , , Other
Resolved Extensions
HikaShop Starter 4.7.5 [2308101603], HikaShop Starter 4.7.5 [2308101603], XSS (Cross Site Scripting)
LazyDbBackup, 3.9.0, Other
Solidres, 2.13.3, XSS (Cross Site Scripting)
Edocman 1.24.7 - XSS issue fixed
quickform, , Other
JC Dashboards, 1.3.10, Other
HikaShop, Versions from 4.4.1 to 4.7.2 are affected, SQL Injection
HikaShop Joomla Plugin, , SQL Injection
Visforms Base Package for Joomla!, 3.14.10, SQL Injection
J-BusinessDirectory, 5.7.7 and prior, Other