Vulnerabilities > Crocoblock > Jetengine

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-41844 Unspecified vulnerability in Crocoblock Jetengine
Crocoblock JetEngine before 2.9.1 does not properly validate and sanitize form data.
network
low complexity
crocoblock
critical
9.8
2021-08-16 CVE-2021-38607 Cross-site Scripting vulnerability in Crocoblock Jetengine
Crocoblock JetEngine before 2.6.1 allows XSS by remote authenticated users via a custom form input.
network
low complexity
crocoblock CWE-79
5.4