SQL Injection Vulnerability in JS Jobs Plugin for Joomla by JoomSky
CVE-2025-54475

8.7HIGH

Key Information:

Vendor
CVE Published:
15 August 2025

What is CVE-2025-54475?

The JS Jobs plugin for Joomla contains a SQL injection vulnerability that allows low-privilege users to execute arbitrary SQL commands due to insufficient input validation. This flaw potentially enables attackers to manipulate the database, leading to data exposure or corruption. It is crucial for users of affected versions (1.3.2 to 1.4.4) to apply patches promptly to secure their applications.

Affected Version(s)

JS Jobs component for Joomla 1.3.2-1.4.4

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Adam Wallwork
.
CVE-2025-54475 : SQL Injection Vulnerability in JS Jobs Plugin for Joomla by JoomSky