PatchSiren

Joomlathat CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Joomlathat CVE published 2026-06-19

CVE-2017-20267

CVE-2017-20267 is an SQL injection vulnerability in Joomla! Component Calendar Planner 1.0.1. Unaffected versions and specific vulnerable configurations are not detailed. The vulnerability allows unauthenticated attackers to inject malicious SQL commands via the category_id parameter in GET requests to the events view, potentially leading to sensitive database information disclosure. Defenders should asse [truncated]