CVE-2025-22206

All FrameworksJoomlaCWE-89CVE-2025-22206

CVE-2025-22206

State: PUBLISHED · Published: 2025-02-04 · Updated: 2025-02-06 · Assigner: Joomla
Description
A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.2 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the 'fieldfor' parameter in the GDPR Field feature.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/22xxx/CVE-2025-22206.json