Joomla Commentator 1.1b3, a Joomla commenting plugin, suffers from an XSS vulnerability in its "title" field that enables attackers to possibly run scripts as an administrator.
title"/onmouseover="alert(/xss/.source)
Timeline
- Vulnerabilities Discovered: 3 November 2009
- Vendor Notified: 3 November 2009
- Vendor Response: ... 2009
- Update Available: ... 2009
- Disclosure: 15 November 2009
|
Sunday, 08 November 2009 18:56
I am proud to announce the release of JMyLife 1.0, a new Joomla component by yours truly! JMyLife aims to replicate the functionality of fmylife.com in a Joomla 1.5 native component! There are 2 versions available: JMyLife 1.0 FREE, which has the bare essentials, and JMyLife 1.0 Pro, with all the bells and whistles! View the demo here - JMyLife Component Demo. Overview of Features
When you purchase the Pro version, ALL minor updates (until 1.1) will be included, and you will be supporting future development of this project.
Last Updated on Thursday, 12 November 2009 11:56
Friday, 06 November 2009 23:55
I was doing some restructuring to my soon-to-be-released Joomla component, JMyLife, and wanted to have a slect item in the configuration view in order to allow the admin to select a page to direct users to as a "sign up" page. I originally had this item as part of the global view parameters, but I was having issues with Menu Items overriding the global values on specific views. I started digging through the Joomla API documents, expecting to find a simple JHTML statement I could use to produce this form element, but couldn't. I ended up with a solution that works, though I wish it were a bit easier.
Last Updated on Saturday, 07 November 2009 04:19
Thursday, 29 October 2009 09:34
As part of a recent project, I needed to open a modal window using Javascript. Here's how I did it.
Last Updated on Monday, 07 December 2009 12:44
Saturday, 24 October 2009 14:47
Lately in my spare time, I've been working on a new Extension collection for my new site, I Hate My Neighbors. I'm planning on releasing this one as a commercial component soon, and as such I wanted to make sure the install process was as simple as possible. Since the component has some plugins and modules that go along with it, I decided it should go ahead and install everything from a single package. Here's how I did it.
Last Updated on Wednesday, 24 March 2010 19:07
|
Featured Extensions
|
$25.00
|
$3.00
FREE You Save: $3.00 |
$1.00
FREE You Save: $1.00 |
$1.00
FREE You Save: $1.00 |
Latest Articles
Most Popular
The Joomla!® name is used under a limited license from Open Source Matters in the United States and other countries. Jeff Channell is not affiliated with or endorsed by Open Source Matters or the Joomla!® Project.

Joomla!

