Techjoomla develops a focused line of Joomla extensions and community-engagement components including social advertising, event ticketing, and fundraising functionality that extend the capabilities of Joomla-based websites. The observed vulnerability exposure concentrates on SQL injection weaknesses in these web-application plugins, a recurrent risk class in database-driven content management extensions. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Techjoomla over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-6585CRITICAL SQL Injection exists in the JTicketing 2.0.16 component for Joomla! via a view=events action with a filter_creator or filter_events_cat parameter. | Feb 17, 2018 | 9.8 | 41 | NO | YES |
CVE-2018-6394CRITICAL SQL Injection exists in the InviteX 3.0.5 component for Joomla! via the invite_type parameter in a view=invites action. | Feb 17, 2018 | 9.8 | 40 | NO | YES |
CVE-2018-5970CRITICAL SQL Injection exists in the JGive 2.0.9 component for Joomla! via the filter_org_ind_type or campaign_countries parameter. | Feb 17, 2018 | 9.8 | 39 | NO | YES |
CVE-2010-4975HIGH SQL injection vulnerability in the Techjoomla SocialAds For JomSocial (com_socialads) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the ads de | Nov 1, 2011 | 7.5 | 31 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Techjoomla.
Media articles that mention a CVE ID that affects a product developed by Techjoomla — matched by CVE ID, not by vendor name.