Joomlaskin is a niche vendor providing hotel-management extensions and components for the Joomlaskin CMS, with its vulnerability profile centered on the JS Multi-Hotel product. The recurring exposure involves web-layer input-handling issues, particularly cross-site scripting and unintended information disclosure typical of application-level template and form processing weaknesses.
The number and severity of CVEs published that impact products developed by Joomlaskin over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-100009MEDIUM The Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and earlier for WordPress allows remote attackers to obtain the installation path via a request to | Jan 13, 2015 | 5.0 | 19 | NO | NO |
CVE-2014-100008MEDIUM Cross-site scripting (XSS) vulnerability in includes/delete_img.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and earlier for WordPress a | Jan 13, 2015 | 4.3 | 18 | NO | NO |
CVE-2013-7419MEDIUM Cross-site scripting (XSS) vulnerability in includes/refreshDate.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 for WordPress allows remot | Jan 9, 2015 | 4.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Joomlaskin.
Media articles that mention a CVE ID that affects a product developed by Joomlaskin — matched by CVE ID, not by vendor name.