Joomla 扩展 - j2commerce.com - J2Store 1.0.0-3.3.20、4.0.0-4.0.20 和 4.1.0-4.1.5 版本中的购物车控制器存在开放重定向漏洞。四个任务处理器接受来自用户输入的 Base64 编码 URL,并在未验证目标主机合法性的情况下将其用于重定向,攻击者可利用商店的受信任域名实施网络钓鱼攻击。该漏洞无需身份验证即可利用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.20 |
affected |
4.0.0-4.0.20 |
affected | ||
4.1.0-4.1.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.20 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-67359 | 8.7 HIGH | Joomla Extension - j2commerce.com - Order content disclosure J2Store 1.0.0-3.3.20, 4.0.0-4 |
| CVE-2026-74252 | 8.6 HIGH | Joomla Extension - j2commerce.com - Stored XSS in Guest checkout in J2Store 1.0.0-3.3.20, |
| CVE-2026-67361 | 6.9 MEDIUM | Joomla Extension - j2commerce.com - Unauthenticated file upload with missing directory pro |
| CVE-2026-67360 | 6.3 MEDIUM | Joomla Extension - j2commerce.com - Cross-customer order replication in J2Store 1.0.0-3.3. |
| CVE-2026-67358 | 5.3 MEDIUM | Joomla Extension - j2commerce.com - Download quota manipulation in J2Store 1.0.0-3.3.20, 4 |
No comments yet