Known Vulnerabilities for Phoca Cart Extension For Joomla by Phoca.cz
Listed below are 3 of the newest known vulnerabilities associated with "Phoca Cart Extension For Joomla" by "Phoca.cz".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76565 json | Joomla Extension - phoca.cz - Reflected XSS via price_from & price_to filter parameters in Phoca Cart 5.0.0-6.1.7 | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-76564 json | Joomla Extension - phoca.cz - Stored XSS via User-Agent header in Admin Order View in Phoca Cart 5.0.0-6.1.7 | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-74251 json | Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 - The a[] (attrib... | Not Provided | 2026-08-16 | 2026-08-18 |