Joomla 扩展 —— j2commerce.com —— J2Store 中向任意已认证用户披露访客结账地址(IDOR 漏洞) 受影响版本:1.0.0–3.3.21、4.0.0–4.0.21、4.1.0–4.1.6 漏洞描述: 在 函数中,只有当所加载的地址记录中的 非空且属于其他用户时,才会将非所有者重定向出去。然而,访客(guest)结账时创建地址记录的 为空,因此该检查对访客地址从不触发。结果是,任何已登录账户只要猜测到较小且连续递增的 ,就能在编辑表单中看到预先填充的访客客户的完整姓名、街道地址和电话号
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.21 |
affected |
4.0.0-4.0.21 |
affected | ||
4.1.0-4.1.6 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.21 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78069 | 9.5 CRITICAL | Joomla Extension - j2commerce.com - Missing authorization on Apps controller delegation ch |
| CVE-2026-78064 | 8.8 HIGH | Joomla Extension - j2commerce.com - Anonymous cart-record tampering via inherited FOF `sav |
| CVE-2026-77999 | 8.7 HIGH | Joomla Extension - j2commerce.com - Unauthenticated PayPal callback forgery leading to ord |
| CVE-2026-78000 | 5.3 MEDIUM | Joomla Extension - j2commerce.com - Open redirect in cart controller in J2Store 1.0.0-3.3. |
No comments yet