CVE-2026-28134
- EPSS 0.23%
- Veröffentlicht 05.03.2026 06:16:48
- Zuletzt bearbeitet 22.04.2026 21:27:27
Improper Control of Generation of Code ('Code Injection') vulnerability in Crocoblock JetEngine jet-engine allows Remote Code Inclusion.This issue affects JetEngine: from n/a through <= 3.7.2.
CVE-2025-68495
- EPSS 0.18%
- Veröffentlicht 20.02.2026 15:46:38
- Zuletzt bearbeitet 15.04.2026 00:35:42
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetEngine jet-engine allows Reflected XSS.This issue affects JetEngine: from n/a through <= 3.8.0.
CVE-2025-67923
- EPSS 0.26%
- Veröffentlicht 22.01.2026 16:51:52
- Zuletzt bearbeitet 15.04.2026 00:35:42
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetEngine jet-engine allows Reflected XSS.This issue affects JetEngine: from n/a through <= 3.7.7.
CVE-2025-69333
- EPSS 0.17%
- Veröffentlicht 07.01.2026 11:52:24
- Zuletzt bearbeitet 23.04.2026 15:36:22
Missing Authorization vulnerability in Crocoblock JetEngine jet-engine allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JetEngine: from n/a through <= 3.8.1.1.
CVE-2025-49938
- EPSS 0.21%
- Veröffentlicht 22.10.2025 14:32:16
- Zuletzt bearbeitet 15.04.2026 00:35:42
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetEngine jet-engine allows Stored XSS.This issue affects JetEngine: from n/a through <= 3.7.3.
CVE-2025-53195
- EPSS 0.27%
- Veröffentlicht 20.08.2025 08:03:22
- Zuletzt bearbeitet 23.04.2026 15:32:16
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetEngine jet-engine allows Stored XSS.This issue affects JetEngine: from n/a through <= 3.7.0.
CVE-2025-53194
- EPSS 0.37%
- Veröffentlicht 20.08.2025 08:03:22
- Zuletzt bearbeitet 23.04.2026 15:32:16
Deserialization of Untrusted Data vulnerability in Crocoblock JetEngine jet-engine allows Code Injection.This issue affects JetEngine: from n/a through <= 3.7.0.
CVE-2025-53196
- EPSS 0.49%
- Veröffentlicht 20.08.2025 08:03:21
- Zuletzt bearbeitet 29.04.2026 10:16:49
Insertion of Sensitive Information Into Sent Data vulnerability in Crocoblock JetEngine jet-engine allows Retrieve Embedded Sensitive Data.This issue affects JetEngine: from n/a through <= 3.7.0.
CVE-2025-54688
- EPSS 0.22%
- Veröffentlicht 14.08.2025 10:34:49
- Zuletzt bearbeitet 23.04.2026 15:32:49
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetEngine jet-engine allows Stored XSS.This issue affects JetEngine: from n/a through <= 3.7.1.2.
CVE-2025-26870
- EPSS 0.26%
- Veröffentlicht 15.04.2025 21:53:11
- Zuletzt bearbeitet 23.04.2026 15:25:58
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetEngine jet-engine allows DOM-Based XSS.This issue affects JetEngine: from n/a through <= 3.6.4.1.