Vulnerabilities (CVE)

Filtered by vendor Crocoblock Subscribe
Filtered by product Jetengine
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-41844 1 Crocoblock 1 Jetengine 2024-02-04 7.5 HIGH 9.8 CRITICAL
Crocoblock JetEngine before 2.9.1 does not properly validate and sanitize form data.
CVE-2021-38607 1 Crocoblock 1 Jetengine 2024-02-04 3.5 LOW 5.4 MEDIUM
Crocoblock JetEngine before 2.6.1 allows XSS by remote authenticated users via a custom form input.