Joomla Vulnerabilities
CVE security advisories and vulnerability history for Joomla.
CVE security advisories and vulnerability history for Joomla.
Joomla has 992 published CVE records since 2005, of which 2 are in CISA's Known Exploited Vulnerabilities catalog and 578 have a known public exploit. The average CVSS base score across scored CVEs is 6.8.
This page aggregates every publicly disclosed vulnerability (CVE) affecting Joomla products, with severity breakdowns, the most-affected products, the most common weakness types, and the latest disclosures.
A quick read on Joomla's vulnerability posture, as a share of its 992 published CVEs.
across 992 scored CVEs
568 of 992 scored
2 of 992 CVEs
578 of 992 CVEs
167 of 992 CVEs
How the CVSS severity of Joomla's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
2
2 of Joomla's CVEs are confirmed exploited in the wild.
Public exploits
578
578 of Joomla's CVEs have a known public exploit available.
The Joomla products with the most published CVEs. Follow any product to browse its versions and vulnerabilities.
The CWE weakness categories most often found in Joomla CVEs. Follow any weakness for its full explanation.
The CVE Numbering Authorities that publish Joomla CVE records.
How many Joomla CVEs were published each year.
The most recently disclosed vulnerabilities affecting Joomla.
Browse vulnerabilities for other tracked vendors.
Common questions about Joomla vulnerabilities.
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Monitor new Joomla vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.
Track new Joomla CVEs as they are disclosed and get AI-written analysis and remediation guidance.
Monitor Joomla CVEs