Fabrikar maintains a focused product line centered on its Fabrik and Com Fabrikar platforms, with a vulnerability footprint concentrated in web-application input-handling and access-control issues such as path traversal and cross-site scripting. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fabrikar over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-1981MEDIUM Directory traversal vulnerability in the Fabrik (com_fabrik) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller paramete | May 19, 2010 | 6.8 | 45 | NO | YES |
CVE-2018-10727MEDIUM Reflected Cross-Site Scripting (XSS) vulnerability in the fabrik_referrer hidden field in the Fabrikar Fabrik component through v3.8.1 for Joomla! allows remote attackers to inject | Oct 29, 2019 | 6.1 | 21 | NO | NO |
CVE-2011-5004MEDIUM Unrestricted file upload vulnerability in models/importcsv.php in the Fabrik (com_fabrik) component before 2.1.1 for Joomla! allows remote authenticated users with Manager privileg | Dec 25, 2011 | 6.0 | 20 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fabrikar.
Media articles that mention a CVE ID that affects a product developed by Fabrikar — matched by CVE ID, not by vendor name.