[20260810] - Core - Unrestricted uploads of SHTML files
Package: Joomla CMS
Affected: 1.0.0-5.4.7,6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Live defensive vulnerability intelligence for WordPress, Joomla and PrestaShop with severity, affected versions, fixes and official sources.
Send us the website URL, the exact error if available and a short description of what changed.
Follow recent public security advisories relevant to the CMS platforms and hosting environments MIDOSSA supports. This page is built for defensive awareness: affected software, severity, published date, fixed versions when available and the official advisory source.
No exploit payloads or attack instructions are published here. Always verify the official advisory before making production changes.
Source titles are kept in their original language to preserve technical accuracy.
Package: Joomla CMS
Affected: 1.0.0-5.4.7,6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 5.1.0-5.4.7,6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 4.0.0-5.4.7,6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 4.0.0-5.4.7,6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 5.1.0-5.4.7, 6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 4.0.0-5.4.7, 6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 4.0.0-5.4.7, 6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 4.0.0-5.4.7, 6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 4.0.0-5.4.7, 6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: Joomla CMS
Affected: 3.0.0-5.4.7, 6.0.0-6.1.2
Fixed: Upgrade to version 5.4.8, 6.1.3
Package: wp-graphql/wp-graphql
Affected: <= 2.6.0
Package: Joomla CMS
Affected: 4.0.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 4.0.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 4.0.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 4.0.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 3.0.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 6.0.0-6.1.1
Fixed: Upgrade to version 6.1.2
Package: Joomla CMS
Affected: 4.2.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 4.0.0-5.4.6, 6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 4.1.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 3.0.0-5.4.6,6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 4.0.0-5.4.6, 6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 4.0.0-5.4.6, 6.0.0-6.1.1
Fixed: Upgrade to version 5.4.7, 6.1.2
Package: Joomla CMS
Affected: 3.0.0-5.4.5,6.0.0-6.1.0
Fixed: Upgrade to version 5.4.6,6.1.1
Package: Joomla CMS
Affected: 3.0.0-5.4.5,6.0.0-6.1.0
Fixed: Upgrade to version 5.4.6,6.1.1
Package: Joomla CMS
Affected: 3.9.0-5.4.5,6.0.0-6.1.0
Fixed: Upgrade to version 5.4.6,6.1.1
Try another platform, severity or search term.
Filter WordPress, Joomla or PrestaShop and search for a product, package or CVE identifier.
Compare the advisory with the CMS, plugin, extension, module or package version running on your website.
Use the vendor’s official remediation guidance, create a recoverable backup and test important functionality after updates.
The live feed uses public defensive advisories from the GitHub Advisory Database and the Joomla Security Centre. Results are refreshed automatically and cached briefly to protect source services and keep this page fast. Coverage is informational and is not guaranteed to include every vulnerability affecting every plugin, extension or module.
Send us your website URL, CMS and version information. MIDOSSA can perform a deeper security assessment and recommend the safest remediation path.