Home/Product/joomsky js help desk
Product

joomsky js help desk

18 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-30901
< 2.9.3
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in JoomSky J
8.1HIGH
CVE-2025-30886
< 2.9.3
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JoomSky JS Help Desk js-supp
9.3CRITICAL
CVE-2025-30882
< 2.9.2
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in JoomSky JS Help Desk js-support-ti
7.5HIGH
CVE-2025-30880
< 2.9.3
Missing Authorization vulnerability in JoomSky JS Help Desk js-support-ticket allows Exploiting Incorrectly Configured Access Cont
7.5HIGH
CVE-2025-30878
< 2.9.3
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in JoomSky JS Help Desk js-support-ti
8.6HIGH
CVE-2024-13606
< 2.8.9
The JS Help Desk - The Ultimate Help Desk & Support Plugin for WordPress is vulnerable to Sensitive Information Exposure in
7.5HIGH
CVE-2022-46840
< 2.7.2
Missing Authorization vulnerability in JS Help Desk JS Help Desk - Best Help Desk & Support Plugin allows Exploiting Incorrectly C
5.4MEDIUM
CVE-2022-46838
< 2.7.2
Missing Authorization vulnerability in JS Help Desk JS Help Desk - Best Help Desk & Support Plugin allows Exploiting Incorrectly C
9.1CRITICAL
CVE-2024-51670
< 2.8.8
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JoomSky JS Help Desk js-supp
5.9MEDIUM
CVE-2024-43274
< 2.8.7
Missing Authorization vulnerability in JS Help Desk JS Help Desk - Best Help Desk & Support Plugin allows Accessing Functionality
5.8MEDIUM
CVE-2024-31273
< 2.8.4
Missing Authorization vulnerability in JS Help Desk JS Help Desk - Best Help Desk & Support Plugin.This issue affects JS Help Desk
5.3MEDIUM
CVE-2023-25444
< 2.7.8
Unrestricted Upload of File with Dangerous Type vulnerability in JS Help Desk JS Help Desk - Best Help Desk & Support Plugin allow
9.1CRITICAL
CVE-2022-47151
< 2.7.2
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS Help Desk -
8.6HIGH
CVE-2022-46839
<= 2.7.1
Unrestricted Upload of File with Dangerous Type vulnerability in JS Help Desk JS Help Desk - Best Help Desk & Support Plugin.This
10.0CRITICAL
CVE-2023-50839
<= 2.8.1
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS Help Desk -
9.3CRITICAL
CVE-2023-23679
<= 2.7.7
Authorization Bypass Through User-Controlled Key vulnerability in JS Help Desk js-support-ticket allows Accessing Functionality No
4.6MEDIUM
CVE-2022-46842
< 2.7.2
Cross-Site Request Forgery (CSRF) vulnerability in JS Help Desk plugin <= 2.7.1 versions.
5.4MEDIUM
CVE-2018-21002
< 2.0.6
The js-support-ticket plugin before 2.0.6 for WordPress has CSRF.
8.8HIGH
threatengine.sh