CVE-2026-35222
Critical · CVSS 9.8- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- No
- Class
- oss containerizable
- CWE-89
Description
Improperly validated order clauses lead to a SQL injection vulnerability in com_tags.
Affected packages
| Bitnami | joomla | 3.0.0 → 5.4.6 |
| Bitnami | joomla | 6.0.0 → 6.1.1 |
References
Status: profiled · ingested 2026-07-24T12:00:18.000Z