2024

2023

2022

2021

2020

2019

2018

CVE-2018-5982 (v3: 9.8) 17 Feb 2018
SQL Injection exists in the Advertisement Board 3.1.0 component for Joomla! via a task=show_rss_categories&catname= request.
CVE-2018-5987 (v3: 9.8) 17 Feb 2018
SQL Injection exists in the Pinterest Clone Social Pinboard 2.0 component for Joomla! via the pin_id or user_id parameter in a task=getlikeinfo action, the ends parameter in a view=gift action, the category parameter in a view=home action, the uid parameter in a view=pindisplay action, the searchVal parameter in a view=search action, or the uid parameter in a view=likes action.
CVE-2018-5695 (v3: 7.2) 14 Jan 2018
The WpJobBoard plugin 4.4.4 for WordPress allows SQL injection via the order or sort parameter to the wpjb-job or wpjb-alerts module, with a request to wp-admin/admin.php.

2017

CVE-2017-15964 (v3: 9.8) 29 Oct 2017
Job Board Script Software allows SQL Injection via the PATH_INFO to a /job-details URI.

2016

2015

CVE-2015-9399 (v3: 7.2) 20 Sep 2019
The wp-stats-dashboard plugin through 2.9.4 for WordPress has admin/graph_trend.php type SQL injection.
CVE-2015-7877 (v3: 9.8) 11 Sep 2017
Multiple SQL injection vulnerabilities in the User Dashboard module 7.x before 7.x-1.4 for Drupal allow remote attackers to execute arbitrary SQL commands via unspecified vectors.