Vulnerabilities > Extensiondeveloper

DATE CVE VULNERABILITY TITLE RISK
2018-09-28 CVE-2018-17377 SQL Injection vulnerability in Extensiondeveloper Questions 1.4.3
SQL Injection exists in the Questions 1.4.3 component for Joomla! via the term, userid, users, or groups parameter.
network
low complexity
extensiondeveloper CWE-89
critical
9.8