Security News

Joomla Patches Eight-Year-Old LDAP Injection Vulnerability
2017-09-21 16:56

Joomla on Tuesday patched a critical LDAP injection vulnerability that had lingered in the content management system for eight years. Attackers could use this bug to steal admin login credentials.

Joomla Login Page Flaw Exposes Admin Credentials
2017-09-21 11:38

Joomla 3.8 brings more than 300 improvements to the popular content management system (CMS) and patches two vulnerabilities, including one that can be exploited to obtain administrator...

Joomla users: Update immediately to kill severe SQLi vulnerability (Help Net Security)
2017-05-18 16:11

Version 3.7 of Joomla, pushed out less than a month ago, opens websites to SQL injection attacks, Sucury Security researchers have found. As explained by researcher Marc-Alexandre Montpas: “The...

Latest Joomla 3.7.1 Release Patches Critical SQL Injection Attack (The Hackers News)
2017-05-17 09:11

If your website is based on the popular Joomla content management system, make sure you have updated your platform the latest version released today. Joomla, the world's second popular open source...

Joomla vulnerability can be exploited to hijack sites, so patch now! (Help Net Security)
2016-12-15 12:33

If you’re running a website on Joomla, you should update to the newly released 3.6.5 version as soon as possible – or risk your site being hijacked. The newest version of the popular CMS has been...

Most unpatched Joomla sites compromised in latest wave of attacks (Help Net Security)
2016-10-31 16:26

If you run a Joomla-based website and you haven’t implemented the latest security release of the CMS, your site has been almost surely compromised. According to Sucuri CTO Daniel Cid, every Joomla...