CVE-2017-17870: Jbuildozer

Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.

The JBuildozer extension 1.4.1 for Joomla! has SQL Injection via the appid parameter in an entriessearch action.

Affected products

Published 2017-12-27. Last modified 2026-06-17.