SQL Injection Vulnerability in Komento Component for Joomla by StackIdeas
CVE-2025-54294
9.3CRITICAL
What is CVE-2025-54294?
A SQL injection vulnerability has been identified in the Komento component versions 4.0.0 through 4.0.7 for Joomla, enabling unprivileged users to execute arbitrary SQL queries. This can lead to unauthorized access to sensitive data within the database, potentially compromising the website's integrity and security.
Affected Version(s)
Komento component for Joomla 4.0.0-4.0.7