Known Vulnerabilities for Session by Joomla
Listed below are 1 of the newest known vulnerabilities associated with "Session" by "Joomla".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-68501 json | Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Sylius Mo... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-67431 json | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Transport... | Not Provided | 2026-07-29 | 2026-07-30 |
| CVE-2026-67355 json | guzzlehttp/guzzle versions before 7.15.1 fail to preserve host-only cookie scope, storing the request host in the Domain fiel... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-67351 json | Serendipity before 2.6.1 contains an authentication context confusion vulnerability where password validation and session loa... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-67337 json | better-auth versions before 1.4.9 contain a two-factor authentication bypass vulnerability when session.cookieCache is enable... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-67334 json | better-auth versions before 1.6.11 fail to delete cached sessions when removing users via admin, anonymous, or SCIM endpoints... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-67333 json | better-auth before 1.6.13 (and pre-release builds 1.7.0-beta.0 through 1.7.0-beta.3) fail to validate the scheme of redirect_... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-67329 json | @better-auth/stripe versions >= 1.4.11 and < 1.6.21, and >= 1.7.0-beta.0 and < 1.7.0-beta.10, contain an authorization bypass... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-67328 json | @better-auth/sso versions before 1.6.21 contain multiple authentication bypass vulnerabilities in SSO provider handling that ... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-66921 json | Pivotick’s Markdown node-reference renderer failed to HTML-escape the attacker-controlled nodeName value before interpolati... | Not Provided | 2026-07-28 | 2026-07-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Joomla | Session | 1.3.0 |