以下是该漏洞描述的中文翻译: Joomla 扩展 - j2commerce.com - J2Store 1.0.0-3.3.2、4.0.0-4.0.22、4.1.0-4.1.7 中订单访问令牌可预测/可伪造 任何能够获取该网站 Joomla (密钥)的人,都可以为网站上任意订单计算出一个有效的访问令牌,而无需曾下过单,从而获得该订单详情及所购数字下载内容的访客级访问权限。由于该令牌从不轮换,即使底层密钥泄露路径已被修补,只要 Joomla 的 本身未被轮换,这种暴露状态将无限期持续存在。攻击复杂度( )为高,因为它
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.22 |
affected |
4.0.0-4.0.22 |
affected | ||
4.1.0-4.1.7 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| j2commerce.com | J2Store extension for Joomla | 1.0.0-3.3.22 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-82189 | 8.7 HIGH | Joomla Extension - j2commerce.com - Any order can be marked Failed by anyone in J2Store 1. |
| CVE-2026-81568 | 8.7 HIGH | Joomla Extension - j2commerce.com - Arbitrary file read via `task=download` in J2Store 1.0 |
| CVE-2026-81567 | 8.7 HIGH | Joomla Extension - j2commerce.com - Unauthenticated blind SQL injection in the storefront |
| CVE-2026-78081 | 7.1 HIGH | Joomla Extension - j2commerce.com - Missing CSRF protection on cart, checkout and myprofil |
| CVE-2026-82191 | 5.3 MEDIUM | Joomla Extension - j2commerce.com - Unescaped request data reflected into PayPal notify re |
No comments yet