Open Source Matters · Joomla! · CVE-2017-15946
**Name of the Vulnerable Software and Affected Versions**
com tag component version 1.7.6 for Joomla!
**Description**
A SQL injection issue is present in the `tag` parameter of the index.php file, which can be exploited using the GET request method.
**Recommendations**
For com tag component version 1.7.6, consider restricting access to the `tag` parameter in the index.php file until a patch is available. Avoid using the `tag` parameter in the affected API endpoint until the issue is resolved.