以下是该漏洞描述的中文翻译: Joomla 扩展 j2commerce.com —— J2Store 1.0.0-3.3.21、4.0.0-4.0.21、4.1.0-4.1.6 中未经验证的 PayPal 回调伪造,导致订单确认欺诈 PayPal IPN 监听器的签名校验函数( )将 及任何非 的响应都视为有效;其验证请求中禁用了 (SSL 证书对等体校验),并且将验证结果存储在一个下游流程从未检查的字段中——因此无论验证结果如何,后续处理都会继续执行。此外,已付金额的比较逻辑仅在 为正数时才会执行;如果从 POS
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.21 |
affected |
4.0.0-4.0.21 |
affected | ||
4.1.0-4.1.6 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.21 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78069 | 9.5 CRITICAL | Joomla Extension - j2commerce.com - Missing authorization on Apps controller delegation ch |
| CVE-2026-78064 | 8.8 HIGH | Joomla Extension - j2commerce.com - Anonymous cart-record tampering via inherited FOF `sav |
| CVE-2026-78065 | 7.1 HIGH | Joomla Extension - j2commerce.com - Guest checkout address disclosure to any authenticated |
| CVE-2026-78000 | 5.3 MEDIUM | Joomla Extension - j2commerce.com - Open redirect in cart controller in J2Store 1.0.0-3.3. |
No comments yet