• Joomla!®
    • About us
    • Joomla Home
    • What is Joomla?
    • Benefits & Features
    • Project & Leadership
    • Trademark & Licensing
    • The Joomla Foundation
    • Support us
    • Contribute
    • Sponsor
    • Partner
    • Shop
  • Download & Extend
    • Downloads
    • Extensions
    • Languages
    • Get a free site
    • Get a domain
  • Discover & Learn
    • Documentation
    • Training
    • Certification
    • Site Showcase
    • Announcements
    • Blogs
    • Magazine
  • Community & Support
    • Community Portal
    • Events
    • User Groups
    • Forum
    • Service Providers Directory
    • Volunteers Portal
    • Vulnerable Extensions List
  • Developer Resources
    • Developer Network
    • Security Centre
    • Issue Tracker
    • GitHub
    • API Documentation
    • Joomla! Framework

Joomla! Extensions Directory™

Download
Launch
  • Home
  • Browse Extensions
    • Top Rated
    • Most Reviewed
    • New
    • Recently Updated
    • Compatible with J4
    • Compatible with J5
    • Compatible with J5 (with b/c plugin)
  • Search
  • Community
    • Meet the JED Team
    • Blog
    • JED Newsletter
    • Terms of Service
    • Help Joomla!
  • Support
    • Knowledgebase
    • Sponsor Joomla!
  • Vulnerable Extensions
    • About
    • Vulnerable Extensions
    • Resolved Extensions
    • Abandoned Extensions
    • Submit a Report
    • Submit an Update
    • Submit AbandonWare
    • JSON Feed
  • Log in
  • Register
  • Home
  • Vulnerable Extensions
  • Resolved Extensions

Resolved Extensions

This category lists vulnerable versions of extensions for which a patch exists. If your site uses a vulnerable version of an extension listed here, then you are recommended to update.

Filters
List of articles in category Resolved Extensions
Title Published Date
Virtual Classroom, , SQL Injection 22 August 2023
LM-CUSTOM-ADMIN, , Other 22 August 2023
bagallery , , Other 22 August 2023
Solidres, 2.13.3, XSS (Cross Site Scripting) 01 August 2023
Edocman 1.24.7 - XSS issue fixed 01 August 2023
quickform, , Other 24 July 2023
JC Dashboards, 1.3.10, Other 24 July 2023
HikaShop, Versions from 4.4.1 to 4.7.2 are affected, SQL Injection 23 June 2023
HikaShop Joomla Plugin, , SQL Injection 01 June 2023
Visforms Base Package for Joomla!, 3.14.10, SQL Injection 19 April 2023
J-BusinessDirectory, 5.7.7 and prior, Other 10 March 2023
LDAP Integration with Active Directory and OpenLDAP - NTLM & Kerberos Login , 5.0.2, Other 15 January 2023
jCart for OpenCart, jCart for OpenCart 3.0.3.19, XSS (Cross Site Scripting) 02 October 2022
JoomRecipe, 4.2.2, XSS (Cross Site Scripting) 02 October 2022
EDocman, 1.23.3, XSS (Cross Site Scripting) 30 September 2022
EShop Joomla Shopping-Cart, 3.6.0, XSS (Cross Site Scripting) 29 September 2022
easyblog, , Other 14 September 2022
ZH Googlemap, 11.22.3.1, XSS (Cross Site Scripting) 08 July 2022
ijoomla guru, , various 08 July 2022
JUX Timetable, 1.0.4, SQL Injection 08 July 2022
RealPin by Frumania, SQL, 1.5.04 30 December 2020
JomSocial , 4.7.6, XSS (Cross Site Scripting) 05 December 2020
JCE Pro, 2.8.15, xss 23 July 2020
CMS2CMS Connector Extension, 2.0 , other 15 July 2020
js jobs, 1.3, SQL Injection 14 July 2020

Page 1 of 11

  • 1
  • 2
  • 3
  • 4
  • ...
  • 6
  • 7
  • 8
  • 9
  • 10
Vulnerable Extensions
  • JEVents, 3.6.87, SQL Injection
  • osTicky2, , Other
  • EasyShop, 1.4.1, XSS (Cross Site Scripting)
  • LivingWord, , XSS (Cross Site Scripting)
  • Plugin Creative Gallery , , SQL Injection
  • Proforms Basic via sort_order parameter, , SQL Injection
  • EXTPLORER, 2.1.15, XSS (Cross Site Scripting)
  • admirror gallery, , XSS (Cross Site Scripting)
  • Proforms Basic Joomla Module, , Other
  • acymailing, pre 8.7.0 , Other
Resolved Extensions
  • jDownloads v4.0.47, jDownloads v4.0.47, Other
  • Quantum Manager v. 3.2.0, Quantum Manager v. 3.2.0, Other
  • Convert Forms, 4.4.10, XSS (Cross Site Scripting)
  • JS Jobs, 1.4.2, SQL Injection
  • Regularlabs Sourcer, pre version 12.00, Other/RFI
  • HikaShop, 5.1.1, XSS (Cross Site Scripting)
  • Advanced custom fields, 2.7.7, SQL Injection
  • Phoca Gallery, 5.0.0, XSS (Cross Site Scripting)
  • HikaShop Starter 4.7.5 [2308101603], HikaShop Starter 4.7.5 [2308101603], XSS (Cross Site Scripting)
  • LazyDbBackup, 3.9.0, Other

  • Joomla! on Twitter
  • Joomla! on Facebook
  • Joomla! on YouTube
  • Joomla! on LinkedIn
  • Joomla! on Pinterest
  • Joomla! on Instagram
  • Joomla! on GitHub
  • Home
  • About
  • Community
  • Forum
  • Extensions
  • Services
  • Docs
  • Developer
  • Shop
  • Accessibility Statement
  • Privacy Policy
  • Cookie Policy
  • Sponsor Joomla! with $5
  • Help Translate
  • Report an Issue
  • Log in

© 2005 - 2026 Open Source Matters, Inc. All Rights Reserved.

Rochen
Joomla! Hosting by Rochen
× We have detected that you are using an ad blocker. The Joomla! Project relies on revenue from these advertisements so please consider disabling the ad blocker for this domain.