Joomla 扩展 - j2commerce.com - J2Store 1.0.0 至 3.3.2、4.0.0 至 4.0.22、4.1.0 至 4.1.7 版本中,店面商品列表存在未认证的盲注 SQL 注入漏洞。攻击者无需认证,即可通过布尔型或时间型推断方式,任意提取数据库内容(例如客户记录、订单数据、存储的凭据/令牌等)。该漏洞存在于任何公开店面中,只要该店面暴露了标准的商品列表或商品标签筛选功能,即可能被利用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.22 |
affected |
4.0.0-4.0.22 |
affected | ||
4.1.0-4.1.7 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.22 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-82189 | 8.7 HIGH | Joomla Extension - j2commerce.com - Any order can be marked Failed by anyone in J2Store 1. |
| CVE-2026-81568 | 8.7 HIGH | Joomla Extension - j2commerce.com - Arbitrary file read via `task=download` in J2Store 1.0 |
| CVE-2026-78081 | 7.1 HIGH | Joomla Extension - j2commerce.com - Missing CSRF protection on cart, checkout and myprofil |
| CVE-2026-82190 | 6.3 MEDIUM | Joomla Extension - j2commerce.com - Predictable/forgeable order access token in J2Store 1. |
| CVE-2026-82191 | 5.3 MEDIUM | Joomla Extension - j2commerce.com - Unescaped request data reflected into PayPal notify re |
No comments yet