CVE-2025-49485 Information

Description

A SQL injection vulnerability in the Balbooa Forms plugin 1.0.0-2.3.1.1 for Joomla allows privileged users to execute arbitrary SQL commands via the ‘id’ parameter.

Reference

https://extensions.joomla.org/extension/forms/

CNNVD-202507-2423 (Published: 2025-07-18)

Share on: