ja-k2- filter-and- search, version 1.2.2 and all previous
SQL Injection
Resolution: update to 1.2.5
Update notice: https://www.joomlart.com/updates/joomla-extensions/important-security-fix-release-ja-k2-filter-component?utm_source=newsletter&utm_medium=email&utm_campaign=k2filtercritical
Note that developer did not inform the VEL
.