Known Vulnerabilities for Joyland.ai by Joyland
Listed below are 6 of the newest known vulnerabilities associated with "Joyland.ai" by "Joyland".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102671 json | The Joyland AI app accepts invalid SSL certificates in the invisible advertisement WebView by default. | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102670 json | Joyland AI app explicitly permits cleartext HTTP traffic on Android 9+ where the default is to block it. | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102669 json | Joyland AI app does not verify hostnames, allowing a malicious host to connect or intercept chat messages. | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102668 json | The Joyland AI app accepts any TLS certificates from any server without validation. | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102667 json | Joyland AI app allows an attacker with shared network access to inject JavaScript into content loaded in WebView. Without use... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102666 json | The Joyland AI app contains hard-coded credentials for the GeTui push notification service, allowing an attacker to access th... | Not Provided | 2026-10-01 | 2026-10-01 |