SQL Injection Vulnerability in JS Jobs Plugin for Joomla
CVE-2025-22206
4.7MEDIUM
What is CVE-2025-22206?
A SQL injection vulnerability exists in the JS Jobs plugin for Joomla, specifically affecting versions 1.1.5 through 1.4.2. This flaw allows authenticated administrators to inject and execute arbitrary SQL commands through the 'fieldfor' parameter in the GDPR Field feature, posing significant risks to the integrity and confidentiality of the database.
Affected Version(s)
JS Jobs component for Joomla 1.1.5-1.4.2