Justjoomla develops a narrow set of Joomla extensions and components, including carousel and gallery products alongside other specialized plugins, that expose an application-layer attack surface centered on code-injection vulnerabilities. The durable signal in this vendor's profile is the recurrence of improper code generation and injection weaknesses across its extension catalog, a pattern consistent with dynamic content handling in web-component development; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Justjoomla over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-6482MEDIUM PHP remote file inclusion vulnerability in admin.treeg.php in the Flash Tree Gallery (com_treeg) component 1.0 for Joomla!, when register_globals is enabled, allows remote attacker | Mar 18, 2009 | 6.8 | 34 | NO | YES |
CVE-2007-6027MEDIUM PHP remote file inclusion vulnerability in admin.jjgallery.php in the Carousel Flash Image Gallery (com_jjgallery) component for Joomla! allows remote attackers to execute arbitrar | Nov 20, 2007 | 6.8 | 27 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Justjoomla.
Media articles that mention a CVE ID that affects a product developed by Justjoomla — matched by CVE ID, not by vendor name.