CVE-2018-12254: Harmistechnology Ek Rishta

High severity, CVSS 8.8. EPSS: 2.6% chance of exploitation in the next 30 days.

router.php in the Harmis Ek rishta (aka ek-rishta) 2.10 component for Joomla! allows SQL Injection via the PATH_INFO to a home/requested_user/Sent%20interest/ URI.

Affected products

Published 2018-06-12. Last modified 2026-06-17.