Joomlaboat's vulnerability footprint centers on web-application extensions for the Joomla content-management platform, specifically the YouTube Gallery component, where the durable signal reflects application-layer input-handling weaknesses. The recurring exposure involves cross-site scripting and SQL-injection flaws characteristic of insufficiently sanitized user input in web-facing plugins; current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Joomlaboat over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-4960HIGH Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x through 4.1.7, and possibly 3.x, for Joomla! allow remote attacke | Jul 21, 2014 | 7.5 | 35 | NO | YES |
CVE-2013-5956MEDIUM Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) component 3.4.0 for Joomla! allows remote attackers to inject arbi | Apr 25, 2014 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Joomlaboat.
Media articles that mention a CVE ID that affects a product developed by Joomlaboat — matched by CVE ID, not by vendor name.