Jdownloads
Jdownloads: vulnerabilidades y CVE
Jdownloads tiene 7 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses1
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-55758 | Media (5.4) | 0.12% | — | 28 oct 2025 | Multiple CSRF attack vectors in JDownloads component 1.0.0-4.0.47 for Joomla were discovered. |
| CVE-2022-27909 | Media (4.3) | 0.88% | — | 6 may 2022 | In Joomla component 'jDownloads 3.9.8.2 Stable' the remote user can change some parameters in the address bar and see the names of other users' files |
| CVE-2020-19455 | Alta (7.5) | 1.1% | — | 25 sept 2020 | SQL injection exists in the jdownloads 3.2.63 component for Joomla! via components/com_jdownloads/helpers/categories.php, order function via the filter_order parameter. |
| CVE-2020-19451 | Alta (7.5) | 1.1% | — | 25 sept 2020 | SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, updateLog function via the X-forwarded-for Header parameter. |
| CVE-2020-19450 | Alta (7.5) | 1.1% | — | 25 sept 2020 | SQL injection exists in the jdownloads 3.2.63 component for Joomla! via com_jdownloads/helpers/jdownloadshelper.php, getUserLimits function in the list parameter. |
| CVE-2020-19447 | Alta (7.5) | 1.1% | — | 24 sept 2020 | SQL injection exists in the jdownloads 3.2.63 component for Joomla! com_jdownloads/models/send.php via the f_marked_files_id parameter. |
| CVE-2018-10068 | Media (6.1) | 3.9% | — | 12 abr 2018 | The jDownloads extension before 3.2.59 for Joomla! has XSS. |