SQL Injection exists in the JB Bus 2.3 component for Joomla! via the order_number parameter.Referenceshttps://exploit-db.com/exploits/44115