---
title: "Joomla SQL Injection Vulnerability"
description: "CMS Plugin Issue Resolution Joomla Core Versions 3.2-3.4.4 SQL Injection Vulnerability Upgrade Joomla Version 3.4.5 (released 10/22/2015) Trustwave SpiderLabs recently identified a SQL Injection..."
url: https://www.inmotionhosting.com/support/server/databases/joomla-sql-injection-vulnerability/
date: 2015-10-23
modified: 2015-10-23
author: "Carrie Smaha"
categories: ["Working with Databases"]
type: post
lang: en
---

# Joomla SQL Injection Vulnerability

| CMS | Plugin | Issue | Resolution |
| --- | --- | --- | --- |
| Joomla | Core Versions 3.2-3.4.4 | SQL Injection Vulnerability | Upgrade Joomla Version 3.4.5 (released 10/22/2015) |

Trustwave SpiderLabs recently identified a SQL Injection Vulnerability Exploit in the Joomla CMS. This exploit has been discovered in versions 3.2 – 3.4.4 of Joomla. Combining the exploit with other security weaknesses, Trustwave was able to gain full Admin access to any vulnerable Joomla site. It is recommended that Joomla websites using versions 3.2 – 3.4.4 update to version 3.4.5 immediately. Visit the Trustwave blog for more information on the [Joomla SQL Vulnerability Exploit](https://www.trustwave.com/Resources/SpiderLabs-Blog/Joomla-SQL-Injection-Vulnerability-Exploit-Results-in-Full-Administrative-Access/). Click here to [download the latest version of Joomla](https://www.joomla.org/download.html).
