THREAT OPS › Threat News › [NVD] CVE-2019-25762 (HIGH 7.5) — Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive user data by exploiting the projects endpoint. Attackers can send requests to index.php with option=com_jpprojects&view=projects&tmpl=c
[NVD] CVE-2019-25762 (HIGH 7.5) — Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive user data by exploiting the projects endpoint. Attackers can send requests to index.php with option=com_jpprojects&view=projects&tmpl=c
CVE-2019-25762 CVSS: 7.5 HIGH Published: 2026-06-19T18:16:19.143
Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive user data by exploiting the projects endpoint. Attackers can send requests to index.php with option=com_jpprojects&view=projects&tmpl=component&format=json parameters to retrieve user IDs,
MITRE ATT&CK techniques
- Email AddressesT1589.002
Indicators of compromise
- CVE-2019-25762cve
- 1.1.3.2ipv4
Original source: https://nvd.nist.gov/vuln/detail/CVE-2019-25762