Known Vulnerabilities for Session by Joomla
Listed below are 1 of the newest known vulnerabilities associated with "Session" by "Joomla".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-56347 json | AVideo TopMenu plugin through version 26.0 contains a stored cross-site scripting vulnerability in menu item rendering due to... | Not Provided | 2026-06-20 | 2026-06-20 |
| CVE-2026-56345 json | AVideo through 29.0 contains an authorization bypass vulnerability in the Meet plugin's uploadRecordedVideo.json.php endpoint... | Not Provided | 2026-06-20 | 2026-06-20 |
| CVE-2026-56276 json | Flowise before 3.1.2 contains a mass assignment vulnerability in the PUT /api/v1/user endpoint that allows authenticated user... | Not Provided | 2026-06-20 | 2026-06-20 |
| CVE-2026-56208 json | A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder's... | Not Provided | 2026-06-19 | 2026-06-19 |
| CVE-2026-56022 json | Webmin accepts basic authentication without session cookies when an attacker provides the 'User-Agent: webmin' header, allowi... | Not Provided | 2026-06-18 | 2026-06-18 |
| CVE-2026-55199 json | libssh2 through 1.11.1, fixed in commit 1762685, contains a pre-authentication denial of service vulnerability in the SSH_MSG... | Not Provided | 2026-06-17 | 2026-06-18 |
| CVE-2026-55198 json | Hermes WebUI before 0.51.443 contains an authorization bypass vulnerability in the session export endpoint that allows authen... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-55197 json | Hermes WebUI before 0.51.443 contains a broken access control vulnerability in the /api/session endpoint that allows authenti... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-54413 json | driftregion iso14229 through 0.9.0 contains an integer underflow and downstream out-of-bounds read in the Handle_0x27_Securit... | Not Provided | 2026-06-14 | 2026-06-15 |
| CVE-2026-54412 json | LiamBindle MQTT-C through version 1.1.6 contains a heap-based out-of-bounds read and integer underflow in the mqtt_unpack_pub... | Not Provided | 2026-06-14 | 2026-06-15 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Joomla | Session | 1.3.0 |