Joomla 扩展 - j2commerce.com - J2Store 1.0.0-3.3.20、4.0.0-4.0.20、4.1.0-4.1.5 中访客结账时存在存储型跨站脚本漏洞(Stored XSS)- J2Commerce 4.1.5 在访客结账的账单地址字段中易受存储型跨站脚本攻击(XSS)影响。未授权的攻击者通过利用 Joomla 的 Input::getArray() 中的过滤器绕过机制,并结合 PHP 的 variables_order=EGPCS 配置(其中 Cookie 会覆盖 $_REQUE
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.20 |
affected |
4.0.0-4.0.20 |
affected | ||
4.1.0-4.1.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.20 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-67359 | 8.7 HIGH | Joomla Extension - j2commerce.com - Order content disclosure J2Store 1.0.0-3.3.20, 4.0.0-4 |
| CVE-2026-67361 | 6.9 MEDIUM | Joomla Extension - j2commerce.com - Unauthenticated file upload with missing directory pro |
| CVE-2026-67360 | 6.3 MEDIUM | Joomla Extension - j2commerce.com - Cross-customer order replication in J2Store 1.0.0-3.3. |
| CVE-2026-67358 | 5.3 MEDIUM | Joomla Extension - j2commerce.com - Download quota manipulation in J2Store 1.0.0-3.3.20, 4 |
| CVE-2026-67362 | 5.1 MEDIUM | Joomla Extension - j2commerce.com - Open redirect in cart controller in J2Store 1.0.0-3.3. |
No comments yet