Codextrous maintains a focused product portfolio centered on the B2J Contact application, with observed vulnerabilities clustered around input-handling and access-control weaknesses including improper input validation, path traversal, and cryptographic seeding issues. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Codextrous over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-5215CRITICAL The Codextrous B2J Contact (aka b2j_contact) extension before 2.1.13 for Joomla! allows a rename attack that bypasses a "safe file extension" protection mechanism, leading to remot | May 17, 2017 | 9.8 | 31 | NO | NO |
CVE-2017-9030HIGH The Codextrous B2J Contact (aka b2j_contact) extension before 2.1.13 for Joomla! allows a directory traversal attack that bypasses a uniqid protection mechanism, and makes it easie | May 17, 2017 | 7.5 | 24 | NO | NO |
CVE-2017-5214HIGH The Codextrous B2J Contact (aka b2j_contact) extension before 2.1.13 for Joomla! allows prediction of a uniqid value based on knowledge of a time value. This makes it easier to rea | May 17, 2017 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Codextrous.
Media articles that mention a CVE ID that affects a product developed by Codextrous — matched by CVE ID, not by vendor name.