CVE-2025-49467 – JEvents SQL Injection Vulnerability

CVE ID : CVE-2025-49467

Published : June 12, 2025, 4:15 p.m. | 3 hours, 28 minutes ago

Description : A SQL injection vulnerability in JEvents component before 3.6.88 and 3.6.82.1 for Joomla was discovered. The extension is vulnerable to SQL injection via publicly accessible actions to list events by date ranges.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Go to Source