CVE-2025-22212

A SQL injection vulnerability in the Convert Forms component versions 1.0.0-1.0.0 - 4.4.9 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands in the submission management area in backend.
Configurations

Configuration 1 (hide)

cpe:2.3:a:convert_forms_project:convert_forms:*:*:*:*:*:joomla\!:*:*

History

No history.

Information

Published : 2025-03-05 16:15

Updated : 2025-11-13 17:56


NVD link : CVE-2025-22212

Mitre link : CVE-2025-22212

CVE.ORG link : CVE-2025-22212


JSON object : View

Products Affected

convert_forms_project

  • convert_forms
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')