Visforms Subscription 4.4.1 Security Release
A security gap in the Visforms Subscription can under some rare circumstances potentially be used for an SQL injection.
We recommend an immedate update to Visforms base package 4.4.1 and Visforms Subscription 4.4.1
- Extension: Visforms Subscription for Joomla 3 and 4
- probability: low
- Impact: Critical
- Severity: High
- Versions: 3.4.6 - 4.4.0
- Exploit type: SQL injection
Affected installations
- Visforms Subscription Package 3.4.6 - 4.4.0
Solution
Upgrade to Visforms Basic Package and Visforms Subscription Package 4.4.1