Loading HuntDB...

GHSA-vpgj-q2jg-v4fx

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

A SQL injection vulnerability in JEvents component before 3.6.88 and 3.6.82.1 for Joomla was discovered. The extension is vulnerable to SQL injection via publicly accessible actions to list events by date ranges.

Related CVEs

Key Information

GHSA ID
GHSA-vpgj-q2jg-v4fx
Published
June 12, 2025 6:31 PM
Last Modified
June 12, 2025 6:31 PM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 14, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.