Joomla Extension - joomshaper.com - Unauthenticated SQL injection in Easy Store extension 1.0.0-2.0.1 - Improper validation of order parameters lead to an unauthenticated SQL injection in easystore, allowing full DB read access including credentials and sessions.
CVSS
No CVSS.
References
Configurations
No configuration.
History
23 Jul 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-23 17:16
Updated : 2026-07-23 20:17
NVD link : CVE-2026-65761
Mitre link : CVE-2026-65761
CVE.ORG link : CVE-2026-65761
JSON object : View
Products Affected
No product.
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
