# Vulnerabilities in Joomla filter?

**URL:** https://forum.mautic.org/t/vulnerabilities-in-joomla-filter/8993
**Category:** Product Support
**Created:** [July 19, 2017, 11:22am UTC](https://forum.mautic.org/t/vulnerabilities-in-joomla-filter/8993 "2017-07-19T11:22:31Z")
**Posts on this page:** 2
**Page:** 1

<div class="post-metadata">

### Author: ![slewisma](https://avatars.discourse-cdn.com/v4/letter/s/278dde/32.png) [@slewisma](https://forum.mautic.org/u/slewisma)
#### Post date: [July 19, 2017, 11:22am UTC](https://forum.mautic.org/t/vulnerabilities-in-joomla-filter/8993/1 "2017-07-19T11:22:31Z")

</div>

I just received this message from my hosting provider:  
  
  
  
_It appears patches are available for application(s) installed in the following path(s):_  
  
   
  
_2 vulnerabilities in Joomla_  
  
_/home/trailweb/public\_html/mkt/vendor/joomla/filter/src/InputFilter.php_  
  
  
  
It goes on to say they will apply patches automatically if these aren’t addressed within 7 days.  
  
  
  
I don’t use Joomla so if they apply the patches and it only matters for Joomla integrations I’m any side effects will not impact me. However, if these vulnerabilities are serious, I thought the community should know about them and it would be good to see them officially addressed in the software.  
  
  
  
If the filters were mis-flagged by the provider, that too would be good for the community to know to avoid unneeded panic and concern as others might receive the same message as me.

---

<div class="post-metadata">

### Author: ![slewisma](https://avatars.discourse-cdn.com/v4/letter/s/278dde/32.png) [@slewisma](https://forum.mautic.org/u/slewisma)
#### Post date: [July 19, 2017, 11:22am UTC](https://forum.mautic.org/t/vulnerabilities-in-joomla-filter/8993/2 "2017-07-19T11:22:31Z")

</div>

I just received this message from my hosting provider:

[i]It appears patches are available for application(s) installed in the following path(s):

2 vulnerabilities in Joomla  
/home/trailweb/public\_html/mkt/vendor/joomla/filter/src/InputFilter.php[/i]

It goes on to say they will apply patches automatically if these aren’t addressed within 7 days.

I don’t use Joomla so if they apply the patches and it only matters for Joomla integrations I’m any side effects will not impact me. However, if these vulnerabilities are serious, I thought the community should know about them and it would be good to see them officially addressed in the software.

If the filters were mis-flagged by the provider, that too would be good for the community to know to avoid unneeded panic and concern as others might receive the same message as me.
