Vulnerabilities (CVE)

Filtered by vendor Joomla Subscribe
Filtered by product Calendar Planner
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-20267 1 Joomla 1 Calendar Planner 2026-08-19 N/A 8.2 HIGH
Joomla! Component Calendar Planner 1.0.1 contains an SQL injection vulnerability that allows unauthenticated attackers to inject SQL commands through the category_id parameter. Attackers can send GET requests to the events view with malicious SQL code in the category_id parameter to extract sensitive database information.