Joomla Extension - digital-peak.com - Unauthenticated blind SQL injection in DP Calendar 8.18.0 - 10.11.2 - The Joomla extension DP Calendar is vulnerable to an unauthenticated SQL injection.
History

Thu, 30 Jul 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Digital-peak
Digital-peak dp Calendar For Joomla
Vendors & Products Digital-peak
Digital-peak dp Calendar For Joomla

Thu, 23 Jul 2026 15:45:00 +0000

Type Values Removed Values Added
Description The Joomla extension DP Calendar is vulnerable to an unauthenticated SQL injection. Joomla Extension - digital-peak.com - Unauthenticated blind SQL injection in DP Calendar 8.18.0 - 10.11.2 - The Joomla extension DP Calendar is vulnerable to an unauthenticated SQL injection.

Wed, 15 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
References

Wed, 15 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 15 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Description The Joomla extension DP Calendar is vulnerable to an unauthenticated SQL injection.
Title Joomla Extension - digital-peak.com - Unauthenticated blind SQL injection in DP Calendar 8.18.0 - 10.11.2
Weaknesses CWE-89
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published: 2026-07-15T08:08:04.874Z

Updated: 2026-08-12T13:53:49.573Z

Reserved: 2026-06-25T16:55:04.094Z

Link: CVE-2026-57831

cve-icon Vulnrichment

Updated: 2026-07-15T12:32:01.174Z

cve-icon NVD

Status : Deferred

Published: 2026-07-15T09:16:33.310

Modified: 2026-07-23T16:17:28.747

Link: CVE-2026-57831

cve-icon Redhat

No data.