VYPR
Vendor

Widgetfactorylimited

Products
2
CVEs
3
Across products
3
Status
Private

Products

2

Recent CVEs

3
  • CVE-2015-7339HigMar 9, 2020
    risk 0.57cvss 8.8epss 0.01

    JCE Joomla Component 2.5.0 to 2.5.2 allows arbitrary file upload via a .php file extension for an image file to the /com_jce/editor/libraries/classes/browser.php script.

  • CVE-2026-65891MedJul 29, 2026
    risk 0.42cvss 6.5epss 0.00

    Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with file management…

  • CVE-2011-5134Aug 30, 2012
    risk 0.00cvss epss 0.01

    Unrestricted file upload vulnerability in editor/extensions/browser/file.php in the JCE component before 2.0.18 for Joomla! allows remote authenticated users with the author privileges to execute arbitrary PHP code by uploading a file with a double extension, as demonstrated by…