Security Huge IT Joomla Catalog Extension 1.0.4 XSS / SQL Injection July 27, 2016 007admin Leave a comment Huge IT Joomla Catalog extension version 1.0.4 suffers from cross site scripting and remote SQL injection vulnerabilities.