Mürrez
7 credited records · 7 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
20Monitor | CVE-2026-67362No exploit | Joomla Extension - j2commerce.com - Open redirect in cart controller in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5j2commerce.com · j2store extension for joomla · CWE-601 | Medium5.1 | — | 0.5% | Aug 21, 2026 |
25Monitor | CVE-2026-67360No exploit | Joomla Extension - j2commerce.com - Cross-customer order replication in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5j2commerce.com · j2store extension for joomla · CWE-639 | Medium6.3 | — | 0.4% | Aug 21, 2026 |
34Monitor | CVE-2026-67359No exploit | Joomla Extension - j2commerce.com - Order content disclosure J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5j2commerce.com · j2store extension for joomla · CWE-639 | High8.7 | — | 0.4% | Aug 21, 2026 |
21Monitor | CVE-2026-67358Proof of concept | Joomla Extension - j2commerce.com - Download quota manipulation in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5j2commerce.com · j2store extension for joomla · CWE-352 | Medium5.3 | — | 0.2% | Aug 21, 2026 |
27Monitor | CVE-2026-77026No exploit | Joomla Extension - tassos.gr - Client-controlled validation bypass in Convert Forms extension < 5.2.5tassos.gr · convert forms extension for joomla · CWE-602 | Medium6.9 | — | 0.5% | Aug 20, 2026 |
25Monitor | CVE-2026-67287No exploit | Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0joomshaper.com · sp page builder extension for joomla · CWE-284 | Medium6.3 | — | 0.4% | Aug 12, 2026 |
26Monitor | CVE-2026-65891Proof of concept | Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.9.99.widgetfactorylimited · jce · CWE-20 | Medium6.5 | — | 0.3% | Jul 29, 2026 |
- CVE-2026-6736220Monitor
Joomla Extension - j2commerce.com - Open redirect in cart controller in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5
MediumCVSS 5.1No exploitEPSS 1%j2commerce.com · j2store extension for joomlaAug 21, 2026
- CVE-2026-6736025Monitor
Joomla Extension - j2commerce.com - Cross-customer order replication in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5
MediumCVSS 6.3No exploitEPSS 0%j2commerce.com · j2store extension for joomlaAug 21, 2026
- CVE-2026-6735934Monitor
Joomla Extension - j2commerce.com - Order content disclosure J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5
HighCVSS 8.7No exploitEPSS 0%j2commerce.com · j2store extension for joomlaAug 21, 2026
- CVE-2026-6735821Monitor
Joomla Extension - j2commerce.com - Download quota manipulation in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5
MediumCVSS 5.3Proof of conceptEPSS 0%j2commerce.com · j2store extension for joomlaAug 21, 2026
- CVE-2026-7702627Monitor
Joomla Extension - tassos.gr - Client-controlled validation bypass in Convert Forms extension < 5.2.5
MediumCVSS 6.9No exploitEPSS 0%tassos.gr · convert forms extension for joomlaAug 20, 2026
- CVE-2026-6728725Monitor
Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0
MediumCVSS 6.3No exploitEPSS 0%joomshaper.com · sp page builder extension for joomlaAug 12, 2026
- CVE-2026-6589126Monitor
Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.9.99.
MediumCVSS 6.5Proof of conceptEPSS 0%widgetfactorylimited · jceJul 29, 2026