Vulnerabilities > Crocoblock > Jetengine FOR Elementor

DATE CVE VULNERABILITY TITLE RISK
2023-04-10 CVE-2023-1406 Unrestricted Upload of File with Dangerous Type vulnerability in Crocoblock Jetengine for Elementor
The JetEngine WordPress plugin before 3.1.3.1 includes uploaded files without adequately ensuring that they are not executable, leading to a remote code execution vulnerability.
network
low complexity
crocoblock CWE-434
8.8