Extensiondepot maintains a focused portfolio centered on its jsupport product line, a web-based support and customer-service platform vulnerable to application-layer input-handling flaws. The recurring exposure reflects classic web application weaknesses: cross-site scripting and SQL injection issues that arise from insufficient sanitization of user input during page generation and database queries. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Extensiondepot over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-4838MEDIUM SQL injection vulnerability in the JSupport (com_jsupport) component 1.5.6 for Joomla! allows remote authenticated users, with Public Back-end permissions, to execute arbitrary SQL | Sep 14, 2011 | 6.0 | 28 | NO | YES |
CVE-2010-4837MEDIUM Cross-site scripting (XSS) vulnerability in the JSupport (com_jsupport) component 1.5.6 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the subject p | Sep 14, 2011 | 4.3 | 23 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Extensiondepot.
Media articles that mention a CVE ID that affects a product developed by Extensiondepot — matched by CVE ID, not by vendor name.