Записи stackideas
9 опубликованных записей вендора stackideas.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')6
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
37Наблюдать | CVE-2026-21623Эксплойта нет | Extension - stackideas.com - Persistent XSS in EasyDiscuss component 1.0.0-5.0.15 for Joomlastackideas · easydiscuss · CWE-79 | Критическая9,4 | — | 0,2 % | 16 янв. 2026 г. |
37Наблюдать | CVE-2026-21624Эксплойта нет | Extension - stackideas.com - Persistent XSS in EasyDiscuss component 1.0.0-5.0.15 for Joomlastackideas · easydiscuss · CWE-79 | Критическая9,4 | — | 0,2 % | 16 янв. 2026 г. |
36Наблюдать | CVE-2026-21626Эксплойта нет | Extension - stackideas.com - Information disclosure in post custom fields in EasyDiscuss 1.0.0-5.0.15 for Joomlastackideas · easydiscuss · CWE-200 | Критическая9,2 | — | 0,4 % | 6 февр. 2026 г. |
30Наблюдать | CVE-2023-51810Proof of concept | SQL injection vulnerability in StackIdeas EasyDiscuss v.5.0.5 and fixed in v.5.0.10 allows a remote attacker to obtain sensitive informationstackideas · easydiscuss · CWE-89 | Высокая7,5 | — | 1,1 % | 15 янв. 2024 г. |
25Наблюдать | CVE-2015-7324Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in helpers/comment.php in the StackIdeas Komento (com_komento) component before 2.0.5 fostackideas · komento · CWE-79 | Средняя6,1 | — | 1,8 % | 27 дек. 2017 г. |
21Наблюдать | CVE-2018-5263Proof of concept | The StackIdeas EasyDiscuss (aka com_easydiscuss) extension before 4.0.21 for Joomla! allows XSS.stackideas · easydiscuss · CWE-79 | Средняя5,4 | — | 1,6 % | 8 янв. 2018 г. |
19Наблюдать | CVE-2026-21625Эксплойта нет | Extension - stackideas.com - Lack of mime type validation in EasyDiscuss component 1.0.0-5.0.15 for Joomlastackideas · easydiscuss · CWE-434 | Средняя4,8 | — | 0,4 % | 16 янв. 2026 г. |
18Наблюдать | CVE-2014-0793Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in the StackIdeas Komento (com_komento) component before 1.7.3 for Joomla! allow remote stackideas · komento · CWE-79 | Средняя4,3 | — | 1,7 % | 30 янв. 2014 г. |
17Наблюдать | CVE-2014-1837Эксплойта нет | Cross-site scripting (XSS) vulnerability in the StackIdeas Komento (com_komento) component before 1.7.4 for Joomla! allows remote attackers stackideas · komento · CWE-79 | Средняя4,3 | — | 1,2 % | 30 янв. 2014 г. |
- CVE-2026-2162337Наблюдать
Extension - stackideas.com - Persistent XSS in EasyDiscuss component 1.0.0-5.0.15 for Joomla
КритическаяCVSS 9,4Эксплойта нетEPSS 0 %stackideas · easydiscuss16 янв. 2026 г.
- CVE-2026-2162437Наблюдать
Extension - stackideas.com - Persistent XSS in EasyDiscuss component 1.0.0-5.0.15 for Joomla
КритическаяCVSS 9,4Эксплойта нетEPSS 0 %stackideas · easydiscuss16 янв. 2026 г.
- CVE-2026-2162636Наблюдать
Extension - stackideas.com - Information disclosure in post custom fields in EasyDiscuss 1.0.0-5.0.15 for Joomla
КритическаяCVSS 9,2Эксплойта нетEPSS 0 %stackideas · easydiscuss6 февр. 2026 г.
- CVE-2023-5181030Наблюдать
SQL injection vulnerability in StackIdeas EasyDiscuss v.5.0.5 and fixed in v.5.0.10 allows a remote attacker to obtain sensitive information
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %stackideas · easydiscuss15 янв. 2024 г.
- CVE-2015-732425Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in helpers/comment.php in the StackIdeas Komento (com_komento) component before 2.0.5 fo
СредняяCVSS 6,1Эксплойта нетEPSS 2 %stackideas · komento27 дек. 2017 г.
- CVE-2018-526321Наблюдать
The StackIdeas EasyDiscuss (aka com_easydiscuss) extension before 4.0.21 for Joomla! allows XSS.
СредняяCVSS 5,4Proof of conceptEPSS 2 %stackideas · easydiscuss8 янв. 2018 г.
- CVE-2026-2162519Наблюдать
Extension - stackideas.com - Lack of mime type validation in EasyDiscuss component 1.0.0-5.0.15 for Joomla
СредняяCVSS 4,8Эксплойта нетEPSS 0 %stackideas · easydiscuss16 янв. 2026 г.
- CVE-2014-079318Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in the StackIdeas Komento (com_komento) component before 1.7.3 for Joomla! allow remote
СредняяCVSS 4,3Proof of conceptEPSS 2 %stackideas · komento30 янв. 2014 г.
- CVE-2014-183717Наблюдать
Cross-site scripting (XSS) vulnerability in the StackIdeas Komento (com_komento) component before 1.7.4 for Joomla! allows remote attackers
СредняяCVSS 4,3Эксплойта нетEPSS 1 %stackideas · komento30 янв. 2014 г.