SQL Injection Vulnerability in JS JOBS FREE Extension for Joomla!
CVE-2019-17527
9.8CRITICAL
What is CVE-2019-17527?
The JS JOBS FREE extension for Joomla! contains a SQL Injection vulnerability in the dataForDepandantField function within models/custormfields.php. This flaw allows attackers to execute arbitrary SQL queries via a crafted parameter in the index.php file, potentially exposing sensitive data and compromising database integrity. Users of the extension should upgrade to version 1.2.7 or later to mitigate this risk.
