- Project: Joomla!
- SubProject: com_mailto
- Severity: Low
- Versions: 1.5.6 and all previous 1.5 releases
- Exploit type: Email Spam
- Reported Date: 2008-August-29
- Fixed Date: 2008-September-9
The mailto component does not verify validity of the URL prior to sending.
All 1.5.x installs prior to and including 1.5.6 are affected.
Upgrade to latest Joomla! version (1.5.7 or newer).
Reported By Phil Taylor
The JSST at the Joomla! Security Center.