CVE-2025-26855

A SQL injection in Articles Calendar extension 1.0.0 - 1.0.1.0007 for Joomla allows attackers to execute arbitrary SQL commands.
References
Link Resource
https://joomcar.net/
Configurations

No configuration.

History

21 Jul 2025, 19:15

Type Values Removed Values Added
Summary
  • (es) Una inyección SQL en la extensión Articles Calendar 1.0.0 - 1.0.1.0007 para Joomla permite a los atacantes ejecutar comandos SQL arbitrarios.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

18 Jul 2025, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-18 08:15

Updated : 2025-07-22 13:06


NVD link : CVE-2025-26855

Mitre link : CVE-2025-26855

CVE.ORG link : CVE-2025-26855


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')