JoomlaForever.com!
  • Home
  • About US
  • News
  • Test & Reviews
  • Tutorials
  • Tips & Tricks
  • Contact US
  • Login
  • Joomla Custom Fields vs Page Builder Fields: Which Is Better?

  • How to Flag Joomla Extension Updates as Security Releases

    A Joomla extension update that contains a security fix should be clearly distinguishable from a routine feature or maintenance release. Using the documented <security> update metadata mechanism can help site owners and their management processes recognise releases that deserve prompt attention, but it is only a...

    Read more …

  • Preparing Client Sites for Joomla 6.2: Compatibility and Rollout Checklist

    Read more …

  • Phoca Cart 6.1.9 Fixes Paid-Download IDOR: Steps for Joomla Owners

    Phoca Cart 6.1.9 addresses a paid-download insecure direct object reference (IDOR) issue that Joomla shop owners should remediate promptly, particularly where digital products are sold. The update is distinct from two earlier, CVE-tracked cross-site scripting flaws fixed in version 6.1.8, so...

    Read more …

  • AcyMailing Update Site Missing: How Joomla Rebuild Can Hide Security Updates

    A missing AcyMailing update site can prevent Joomla administrators from seeing an available security update. This operational issue matters because AcyMailing Enterprise versions 6.0.0 through 11.0.5 are affected by two unauthenticated vulnerabilities fixed in version 11.1.0 or later.

    Read more …

  • Revoking Joomla API Tokens After a Breach: A Practical Guide

    When a Joomla site may have been compromised, patching the software is necessary but does not by itself resolve the risk from credentials issued before the incident. This guide explains how to assess Joomla API token exposure, revoke and replace tokens safely, and respond to two verified Joomla...

    Read more …

  • Patch SQL Injection and XSS in Three OrdaSoft Joomla Extensions

    Six confirmed Joomla extension vulnerabilities affect the Free editions of OrdaSoft Real Estate Manager, Vehicle Manager and Book Library. Site owners should update the first two extensions immediately and treat Book Library versions through 6.4.6 as vulnerable while waiting for an explicitly...

    Read more …

  • Joomla Extension Security Update: Modules Anywhere and Tabs & Accordions

    Joomla administrators using Regular Labs Modules Anywhere or Tabs & Accordions should update to versions 10.0.0 and 3.2.0 respectively as a prudent security measure. However, two CVE identifiers initially associated with those releases are officially assigned to Event Gallery for Joomla, so...

    Read more …

  • Update UP Plugin: Critical Joomla Vulnerabilities Fixed in 6.1.0

    Administrators using the UP (Universal Plugin) for Joomla should urgently identify and update affected releases. Four verified vulnerabilities include unauthenticated arbitrary file access, SQL injection and remote code installation risks, with fixes available in UP 6.1.0 for Joomla 5.2–6.x and UP...

    Read more …

  • AcyMailing 11.1.0 Security Fixes: Update Guidance for Joomla Sites

    AcyMailing 11.1.0 adds security-related fixes for mailbox uploads and file fields, making a prompt update advisable for Joomla sites using the extension. The release also follows a confirmed Joomla SQL injection fixed in 10.11.1, so administrators should verify that their installation is now at...

    Read more …

  • Update EasyStore to 3.0.1: Seven Joomla Security Flaws Fixed

    EasyStore for Joomla versions 1.0.0 through 3.0.0 are affected by seven documented security vulnerabilities, including an unauthenticated exposure of guest checkout shipping details. Store owners should update to EasyStore 3.0.1 or later, then review backend access, mail settings, and relevant logs.

    Read more …

  • Update OS Gallery to 6.2.7: Four Joomla Security Vulnerabilities

    Four confirmed Joomla extension vulnerabilities affect OrdaSoft OS Gallery, including its free edition, in versions 1.0.0 through 6.2.6. Site owners should update to OS Gallery 6.2.7 or later, review component permissions, and check for signs of unusual database or file activity.

    Read more …

  • How to Build a Simple Joomla Directory Website with Core Features

    Conceptual editorial illustration representing How to Build a Simple Directory Website in Joomla through a clear Joomla-focused visual metaphor.

    A Joomla directory website does not have to begin with a specialist directory extension. For a simple, editorially managed directory, Joomla core can provide a practical foundation: store each business or organization as an article, arrange listings in article categories, record structured details in...

    Read more …

  • Update SP Page Builder to 6.9.1 for Six Security Fixes

    SP Page Builder 6.9.1 addresses six Joomla extension vulnerabilities affecting Free and Pro installations, including an authenticated blind SQL injection, unauthenticated CAPTCHA bypasses in Pro form addons, and media and menu access-control flaws. Site owners running version 6.9.0 or earlier...

    Read more …

  • Joomla Extension Vulnerabilities in SP Property Finder: Update to 4.1.4

    Two unauthenticated vulnerabilities in SP Property Finder affect versions 1.0.0 through 4.1.3: a Critical SQL injection issue and a mail relay–style form abuse issue. Joomla administrators should update to version 4.1.4 or later, then review database, administrator, and mail activity for signs of...

    Read more …

  • Joomla Custom Fields vs Page Builder Fields: Which Is Better?

    Conceptual editorial illustration representing Joomla Custom Fields vs Page Builder Fields: Which Is Better? through a clear Joomla-focused visual metaphor.

    Choosing between Joomla Custom Fields and page builder fields is not simply a choice between a basic editor and a visual editor. The two approaches can represent very different content architectures. Joomla Custom Fields store structured values in Joomla's core content model. A builder may map...

    Read more …

About us

JF Logo

JoomlaForever.com is an independent source publishing news and tests about Joomla CMS.

Contact info

  • JoomlaForever.com!
  • Contact owner:  Bjørn Ove Bremnes
  • General info:
Social Medial:
  • JoomlaForever on Facebook
  • JoomlaForever on Twitter / X

Useful links

  • Home
  • About JoomlaForever.com
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
  • Comments Policy
  • Sitemap
  • Register account
  • Login
This site is sponsored by:
Bredc.com logo

All our content is original, and therefore it's copyrighted by JoomlaForever.com!

If you wish to use our content on another site, you will need explicit allowance from JoomlaForever.com! You can do this by emailing  or by using our form (see "Useful links")!

ALL RIGHTS © 2019 - 2026.
JoomlaForever.com!, and this site is not affiliated with or endorsed by The Joomla! Project™. Any products and services provided through this site are not supported or warrantied by The Joomla! Project or Open Source Matters, Inc. Use of the Joomla!® name, symbol, logo and related trademarks is permitted under a limited license granted by Open Source Matters, Inc...