Vulnerabilities

Summary — last 7 days

New vulnerabilities2,715▼ 529 vs. last week
Critical / high1,290▼ 220 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)225▼ 276 vs. last week
–

3 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedCritical (9.8)2.7%💥 ExploitNeojoomla Neorecruit2/17/20186/17/2026
SQL Injection exists in the NeoRecruit 4.1 component for Joomla! via the (1) PATH_INFO or (2) name of a .html file under the all-offers/ URI.
ModifiedHigh (7.5)1.2%💥 ExploitNeojoomla COM Neorecruit11/1/20116/16/2026
SQL injection vulnerability in the NeoRecruit (com_neorecruit) component 1.6.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in an offer_view action to index.php, a different vector than CVE-2007-4506.
ModifiedHigh (7.5)2.6%💥 ExploitJoomla Neorecruit8/23/20076/16/2026
SQL injection vulnerability in index.php in the NeoRecruit component (com_neorecruit) 1.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an offer_view action.