CVE-2025-50127: Dj-Extensions.com Dj-Flyer Component For Joomla

High severity, CVSS 8.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A SQLi vulnerability in DJ-Flyer component 1.0-3.2 for Joomla was discovered. The issue allows privileged users to execute arbitrary SQL commands.

Affected products

Published 2025-07-23. Last modified 2026-06-17.