CVE-2025-49484

All FrameworksJoomlaCWE-89CVE-2025-49484

CVE-2025-49484

State: PUBLISHED · Published: 2025-07-18 · Updated: 2025-09-30 · Assigner: Joomla
Description
A SQL injection vulnerability in the JS Jobs plugin versions 1.0.0-1.4.1 for Joomla allows low-privilege users to execute arbitrary SQL commands via the 'cvid' parameter in the employee application feature.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/49xxx/CVE-2025-49484.json