CVE-2026-97265
- EPSS 0.13%
- Veröffentlicht 30.09.2026 17:39:01
- Zuletzt bearbeitet 30.09.2026 19:04:41
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock. Jetimpex Inc. JetEngine allows Stored XSS. This issue affects JetEngine: from n/a through 3.8.15.3.
CVE-2026-97238
- EPSS 0.17%
- Veröffentlicht 30.09.2026 12:27:58
- Zuletzt bearbeitet 30.09.2026 14:18:14
Subscriber Cross Site Scripting (XSS) in JetEngine <= 3.8.14.3 versions.
CVE-2026-97237
- EPSS 0.18%
- Veröffentlicht 30.09.2026 12:27:57
- Zuletzt bearbeitet 30.09.2026 14:18:14
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.3 versions.
CVE-2026-81760
- EPSS 0.15%
- Veröffentlicht 28.08.2026 14:33:35
- Zuletzt bearbeitet 28.08.2026 20:20:12
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetEngine allows Reflected XSS. This issue affects JetEngine: from n/a through 3.8.14.2.
CVE-2026-66581
- EPSS -
- Veröffentlicht 20.08.2026 12:16:32
- Zuletzt bearbeitet 20.08.2026 15:18:15
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.
CVE-2026-66613
- EPSS 0.48%
- Veröffentlicht 19.08.2026 12:38:45
- Zuletzt bearbeitet 20.08.2026 16:17:45
Unauthenticated Remote Code Execution (RCE) in JetEngine <= 3.8.14 versions.
CVE-2026-28082
- EPSS 0.18%
- Veröffentlicht 06.08.2026 14:27:08
- Zuletzt bearbeitet 12.08.2026 20:58:37
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.13.1 versions.
CVE-2026-65467
- EPSS 0.15%
- Veröffentlicht 23.07.2026 11:18:44
- Zuletzt bearbeitet 23.07.2026 16:17:50
Contributor Server Side Request Forgery (SSRF) in JetEngine <= 3.8.11 versions.
CVE-2026-56068
- EPSS 0.23%
- Veröffentlicht 26.06.2026 14:52:52
- Zuletzt bearbeitet 29.06.2026 15:16:42
Unauthenticated SQL Injection in JetEngine <= 3.8.10.2 versions.
CVE-2026-49076
- EPSS 0.37%
- Veröffentlicht 17.06.2026 09:51:24
- Zuletzt bearbeitet 28.09.2026 06:16:31
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Crocoblock JetEngine jet-engine allows Blind SQL Injection.This issue affects JetEngine: from n/a through 3.8.9.1.