A stored XSS vulnerability in No Boss Testimonials component 1.0.0-3.0.0 and 4.0.0-4.0.2 for Joomla was discovered.
References
History

Mon, 04 Aug 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 29 Jul 2025 10:15:00 +0000

Type Values Removed Values Added
First Time appeared Joomla
Joomla joomla!
Nobossextensions
Nobossextensions no Boss Testimonials Component
Vendors & Products Joomla
Joomla joomla!
Nobossextensions
Nobossextensions no Boss Testimonials Component

Mon, 28 Jul 2025 17:45:00 +0000

Type Values Removed Values Added
Description A stored XSS vulnerability in No Boss Testimonials component 1.0.0-3.0.0 and 4.0.0-4.0.2 for Joomla was discovered.
Title Extension - nobossextensions.com - Stored XSS vulnerability in No Boss Testimonials component 1.0.0-3.0.0 and 4.0.0-4.0.2 for Joomla
Weaknesses CWE-79
References
Metrics cvssV4_0

{'score': 9.4, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:H/SI:H/SA:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published: 2025-07-28T17:30:00.460Z

Updated: 2025-08-05T04:44:35.757Z

Reserved: 2025-07-18T09:52:23.346Z

Link: CVE-2025-54299

cve-icon Vulnrichment

Updated: 2025-07-28T17:50:04.976Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-07-28T18:15:27.113

Modified: 2025-07-29T14:14:29.590

Link: CVE-2025-54299

cve-icon Redhat

No data.