Janguo appears to be a narrowly scoped vendor focused on file-management and upload functionality, with exposure concentrated in products such as JimTawl. The recurring vulnerability signal centers on path-traversal and unsafe file-upload handling, reflecting common input-validation and access-control weaknesses in file-handling applications. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Janguo over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-6580CRITICAL Arbitrary file upload exists in the Jimtawl 2.1.6 and 2.2.5 component for Joomla! via a view=upload&task=upload&pop=true&tmpl=component request. | Feb 2, 2018 | 9.8 | 62 | NO | YES |
CVE-2010-4769HIGH Directory traversal vulnerability in the Jimtawl (com_jimtawl) component 1.0.2 Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact vi | Mar 23, 2011 | 7.5 | 45 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Janguo.
Media articles that mention a CVE ID that affects a product developed by Janguo — matched by CVE ID, not by vendor name.