- Thank you received: 1
Wrong update version for jsJobs in Know Vulnerabilities
- OdraregPepper
- Topic Author
- Offline
- Senior Member
-
In DashboardVulnerabilities its listed com_jsjobs, in details show this
Description Class Published Affected versions Solution (1)
Js Jobs Component Other vulnerabilities Oct 14 2019 Version 1.1.5, 1.1.6, 1.2.5 and 1.2.6 Update to version 2.1.7
But the last version at Joomsky is 1.2.8 for both free and pro versions, so there is no way to update to 2.1.7
www.joomsky.com/products/js-jobs.html
www.joomsky.com/products/js-jobs-pro.html
If you please check the Version History will se that 1.2.8 is the last
Can you please check this?
Thanks in advance
Please Log in or Create an account to join the conversation.
- Jose
-
- Offline
- Administrator
-
- Thank you received: 344
Solution row shows the version to update to when I publish the vulnerability, but as the (1) number says "there could be a newer version published". This is our case: when I published the vulnerability recommend version to update was 2.1.7 but currently there is a new version available ( 2.1.8 ), so updating to 2.1.8 should fix the vulnerability.
Anyway the database shows that your version ( 2.1.8 ) is vulnerable; I will check why.
Regards,
Jose
Please Log in or Create an account to join the conversation.
- jhvanee
- Offline
- Senior Member
-
- Thank you received: 2

Please Log in or Create an account to join the conversation.
- Jose
-
- Offline
- Administrator
-
- Thank you received: 344
I know what happens: by mistake I changed vulnerable version in the update database xml. I will fix it in the next release.Anyway the database shows that your version ( 2.1.8 ) is vulnerable; I will check why.
Yes, it will also be fixed in the next versionThis problem also still occurs for Huge IT version 1.1.0

Regards,
Jose
Please Log in or Create an account to join the conversation.
- OdraregPepper
- Topic Author
- Offline
- Senior Member
-
- Thank you received: 1
Have a nice week
Please Log in or Create an account to join the conversation.
- Jose
-
- Offline
- Administrator
-
- Thank you received: 344
And thank you very much to you for reporting this!
Regards,
Jose
Please Log in or Create an account to join the conversation.
In order to provide you with the best online experience this website uses cookies.
By using our website, you agree to our use of cookies.
This site is not affiliated with or endorsed by the Joomla! Project. It is not supported or warranted by the Joomla! Project or Open Source Matters. The Joomla! logo is used under a limited license granted by Open Source Matters, the trademark holder in the United States and other countries.
We may collect your IP address and your browser's User Agent string while using our site for security reasons. This information is retained only until we check you're not trying to hack our website.