GHSA-pmcx-2353-j242Critical

Joomla Extension - joomshaper.com - Unauthenticated SQL injection in Easy Store extension 1.0.0-2...

Published
July 23, 2026
Last Modified
July 23, 2026

🔗 CVE IDs covered (1)

📋 Description

Joomla Extension - joomshaper.com - Unauthenticated SQL injection in Easy Store extension 1.0.0-2.0.1 - Improper validation of order parameters lead to an unauthenticated SQL injection in easystore, allowing full DB read access including credentials and sessions.

🔗 References (4)