CVE-2018-5987: Social Pinboard Project Social Pinboard
Critical severity, CVSS 9.8. EPSS: 2.7% chance of exploitation in the next 30 days.
SQL Injection exists in the Pinterest Clone Social Pinboard 2.0 component for Joomla! via the pin_id or user_id parameter in a task=getlikeinfo action, the ends parameter in a view=gift action, the category parameter in a view=home action, the uid parameter in a view=pindisplay action, the searchVal parameter in a view=search action, or the uid parameter in a view=likes action.
Affected products
- Social Pinboard Project Social Pinboard: version 2.0 only
Published 2018-02-17. Last modified 2026-06-17.