joomshaper.com SP Property extension for Joomla

6 known vulnerabilities in joomshaper.com SP Property extension for Joomla, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-78085 CVSS 6.9 medium Joomla Extension - joomshaper.com - Path Traversal in Gallery Image Management in SP Property < 4.1.4 - The gallery management controller…
  • CVE-2026-78303 CVSS 6.9 medium Joomla Extension - joomshaper.com - Unvalidated Email Destination & Form Manipulation in Booking Requests in SP Property < 4.1.4 - Booking…
  • CVE-2026-78302 CVSS 8.6 high Joomla Extension - joomshaper.com - Unauthenticated Stored Cross-Site Scripting (XSS) via Unescaped Output in Views and Admin Lists in SP…
  • CVE-2026-78084 CVSS 6.9 medium Joomla Extension - joomshaper.com - Missing Access Control in Gallery Image Management in SP Property < 4.1.4 - The gallery management…
  • CVE-2026-78083 CVSS 7.1 high Joomla Extension - joomshaper.com - Missing CSRF Token Verification in Property Booking and Agent Contact Endpoints in SP Property < 4.1.4…
  • CVE-2026-78082 CVSS 9.3 critical Joomla Extension - joomshaper.com - Unauthenticated SQL Injection in Property Search and Map Filtering in SP Property < 4.1.4 - The…