| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-4352 | JetEngine <= 3.8.6.1 - Unauthenticated SQL Injection via '_cct_search' Parameter | Crocoblock | JetEngine | High | 7.5 | 2026-04-14 01:25:01 | Deep Dive |
| CVE-2026-4662 | JetEngine <= 3.8.6.1 - Unauthenticated SQL Injection via Listing Grid 'filtered_query' Parameter | Crocoblock | JetEngine | High | 7.5 | 2026-03-24 04:27:50 | Deep Dive |
| CVE-2026-32355 | WordPress JetEngine plugin < 3.8.4.1 - Deserialization of untrusted data vulnerability | Crocoblock | JetEngine | 中危 | - | 2026-03-13 11:42:01 | Deep Dive |
| CVE-2026-3496 | JetBooking <= 4.0.3 - Unauthenticated SQL Injection via 'check_in_date' Parameter | Crocoblock | JetBooking | High | 7.5 | 2026-03-11 13:24:35 | Deep Dive |
| CVE-2026-28134 | WordPress JetEngine plugin <= 3.7.2 - Remote Code Execution (RCE) vulnerability | Crocoblock | JetEngine | 中危 | - | 2026-03-05 05:54:31 | Deep Dive |
| CVE-2025-68495 | WordPress JetEngine plugin <= 3.8.0 - Reflected Cross Site Scripting (XSS) vulnerability | Crocoblock | JetEngine | - | - | 2026-02-20 15:46:38 | Deep Dive |
| CVE-2026-24958 | WordPress JetElements For Elementor plugin <= 2.7.12.2 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetElements For Elementor | - | - | 2026-02-03 14:08:35 | Deep Dive |
| CVE-2025-67923 | WordPress JetEngine plugin <= 3.7.7 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetEngine | - | - | 2026-01-22 16:51:53 | Deep Dive |
| CVE-2025-69333 | WordPress JetEngine plugin <= 3.8.1.1 - Broken Access Control vulnerability | Crocoblock | JetEngine | Medium | 4.3 | 2026-01-07 11:52:24 | Deep Dive |
| CVE-2025-68498 | WordPress JetTabs plugin <= 2.2.12 - Broken Access Control vulnerability | Crocoblock | JetTabs | Medium | 6.5 | 2025-12-29 23:13:35 | Deep Dive |
| CVE-2025-68499 | WordPress JetTabs plugin <= 2.2.12 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetTabs | Medium | 6.5 | 2025-12-29 23:10:45 | Deep Dive |
| CVE-2025-68502 | WordPress JetPopup plugin <= 2.0.20.1 - Insecure Direct Object References (IDOR) vulnerability | Crocoblock | JetPopup | Medium | 4.3 | 2025-12-29 21:16:56 | Deep Dive |
| CVE-2025-68503 | WordPress JetBlog plugin <= 2.4.7 - Broken Access Control vulnerability | Crocoblock | JetBlog | Medium | 6.5 | 2025-12-29 21:15:43 | Deep Dive |
| CVE-2025-68504 | WordPress JetSearch plugin <= 3.5.16 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetSearch | Medium | 6.5 | 2025-12-29 21:14:41 | Deep Dive |
| CVE-2025-64355 | WordPress JetElements For Elementor plugin <= 2.7.12 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetElements For Elementor | Medium | 6.5 | 2025-12-18 16:16:34 | Deep Dive |
| CVE-2025-49938 | WordPress JetEngine plugin <= 3.7.3 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetEngine | - | - | 2025-10-22 14:32:17 | Deep Dive |
| CVE-2025-49939 | WordPress JetElements For Elementor plugin <= 2.7.8 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetElements For Elementor | - | - | 2025-10-22 14:32:17 | Deep Dive |
| CVE-2025-49934 | WordPress JetBlocks For Elementor plugin <= 1.3.18 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetBlocks For Elementor | Medium | 6.5 | 2025-10-22 14:32:16 | Deep Dive |
| CVE-2025-49933 | WordPress JetBlog plugin <= 2.4.4 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetBlog | - | - | 2025-10-22 14:32:16 | Deep Dive |
| CVE-2025-49928 | WordPress JetWooBuilder plugin <= 2.1.20 - Cross Site Scripting (XSS) vulnerability | Crocoblock | JetWooBuilder | - | - | 2025-10-22 14:32:15 | Deep Dive |