Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-2669 | A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.3 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the 'searchpaymentstatus' parameter in the Employer Payment History search feature. |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 04 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Joomsky
Joomsky js Jobs |
|
| CPEs | cpe:2.3:a:joomsky:js_jobs:*:*:*:*:*:joomla\!:*:* | |
| Vendors & Products |
Joomsky
Joomsky js Jobs |
Fri, 21 Feb 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 18 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Sat, 15 Feb 2025 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.3 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the 'searchpaymentstatus' parameter in the Employer Payment History search feature. | |
| Title | Extension - joomsky.com - SQL injection in JS jobs component version 1.1.5 - 1.4.3 for Joomla | |
| Weaknesses | CWE-89 | |
| References |
|
Status: PUBLISHED
Assigner: Joomla
Published:
Updated: 2025-02-21T12:16:39.292Z
Reserved: 2025-01-01T04:33:02.765Z
Link: CVE-2025-22209
Updated: 2025-02-18T20:49:34.676Z
Status : Analyzed
Published: 2025-02-15T09:15:11.237
Modified: 2025-06-04T20:51:31.390
Link: CVE-2025-22209
No data.
OpenCVE Enrichment
No data.
EUVD