CVE-2015-7297: Joomla!

High severity, CVSS 7.5. EPSS: 100% chance of exploitation in the next 30 days.

SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7858.

Affected products

  • Joomla! Joomla!: version 3.2.0 only; version 3.2.1 only; version 3.2.2 only; version 3.2.3 only; version 3.2.4 only; version 3.3.0 only; …

Published 2015-10-29. Last modified 2026-06-17.