Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Smart Related Articles Project Subscribe
Filtered by product Smart Related Articles
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-7627 1 Smart Related Articles Project 1 Smart Related Articles 2019-10-02 5.0 MEDIUM 5.3 MEDIUM
The "Smart related articles" extension 1.1 for Joomla! does not prevent direct requests to dialog.php (there is a missing _JEXEC check).
CVE-2017-7626 1 Smart Related Articles Project 1 Smart Related Articles 2017-04-20 4.3 MEDIUM 6.1 MEDIUM
The "Smart related articles" extension 1.1 for Joomla! has XSS in dialog.php (n_art,type in GET Method).
CVE-2017-7628 1 Smart Related Articles Project 1 Smart Related Articles 2017-04-20 7.5 HIGH 9.8 CRITICAL
The "Smart related articles" extension 1.1 for Joomla! has SQL injection in dialog.php (attacker must use search_cats variable in POST method to exploit this vulnerability).