İçeriğe atla
Noroxi

Crocoblock kayıtları

crocoblock üreticisine ait 23 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%34,8
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

23 kayıt
  • CVE-2021-41844
    39İzleyin

    Crocoblock JetEngine before 2.9.1 does not properly validate and sanitize form data.

    KritikCVSS 9,8İstismar yokEPSS %1

    crocoblock · jetengine15 Ara 2021

  • CVE-2023-48760
    39İzleyin

    WordPress JetElements For Elementor plugin <= 2.6.13 - Unauthenticated Broken Access Control vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    crocoblock · jetelements19 Haz 2024

  • CVE-2023-1406
    35İzleyin

    JetEngine < 3.1.3.1 - Author+ Remote Code Execution

    YüksekCVSS 8,8İstismar yokEPSS %2

    crocoblock · jetengine for elementor10 Nis 2023

  • CVE-2024-7146
    35İzleyin

    JetTabs <= 2.2.3 - Authenticated (Contributor+) Arbitrary Local File Inclusion

    YüksekCVSS 8,8İstismar yokEPSS %1

    crocoblock · jettabs16 Ağu 2024

  • CVE-2024-7145
    35İzleyin

    JetElements <= 2.6.20 - Authenticated (Contributor+) Arbitrary Local File Inclusion

    YüksekCVSS 8,8İstismar yokEPSS %1

    crocoblock · jetelements16 Ağu 2024

  • CVE-2023-39157
    35İzleyin

    WordPress JetElements For Elementor Plugin <= 2.6.10 is vulnerable to Remote Code Execution (RCE)

    YüksekCVSS 8,8İstismar yokEPSS %1

    crocoblock · jetelements31 Ara 2023

  • CVE-2023-33212
    35İzleyin

    WordPress JetFormBuilder Plugin <= 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    crocoblock · jetformbuilder28 May 2023

  • CVE-2023-48762
    35İzleyin

    WordPress JetElements For Elementor Plugin <= 2.6.13 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    crocoblock · jetelements for elementor18 Ara 2023

  • CVE-2024-43221
    34İzleyin

    WordPress JetGridBuilder plugin <= 1.1.2 - Local File Inclusion vulnerability

    YüksekCVSS 8,5İstismar yokEPSS %1

    crocoblock · jetgridbuilder19 Ağu 2024

  • CVE-2023-48759
    30İzleyin

    WordPress JetElements For Elementor plugin <= 2.6.13 - Unauthenticated Arbitrary Attachment Download vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %0

    crocoblock · jetelements19 Haz 2024

  • CVE-2024-7291
    28İzleyin

    JetFormBuilder <= 3.3.4.1 - Authenticated (Administrator+) Privilege Escalation

    YüksekCVSS 7,2İstismar yokEPSS %1

    jetmonsters · jetformbuilder — dynamic blocks form builder3 Ağu 2024

  • CVE-2024-38772
    26İzleyin

    WordPress JetWidgets for Elementor and WooCommerce plugin <= 1.1.7 - Contributor+ Limited Local File Inclusion vulnerability

    OrtaCVSS 6,5İstismar yokEPSS %0

    crocoblock · jetwidgets for elementor and woocommerce1 Ağu 2024

  • CVE-2023-0086
    26İzleyin

    JetWidgets for Elementor <= 1.0.12 - Cross-Site Request Forgery to Settings Update

    OrtaCVSS 6,5İstismar yokEPSS %0

    crocoblock · jetwidgets for elementor5 Oca 2023

  • CVE-2023-48761
    25İzleyin

    WordPress JetElements For Elementor plugin <= 2.6.13 - Broken Access Control vulnerability

    OrtaCVSS 6,3İstismar yokEPSS %0

    crocoblock · jetelements19 Haz 2024

  • CVE-2021-38607
    21İzleyin

    Crocoblock JetEngine before 2.6.1 allows XSS by remote authenticated users via a custom form input.

    OrtaCVSS 5,4İstismar yokEPSS %1

    crocoblock · jetengine16 Ağu 2021

  • CVE-2021-24268
    21İzleyin

    JetWidgets For Elementor < 1.0.9 - Contributor+ Stored XSS

    OrtaCVSS 5,4İstismar yokEPSS %1

    crocoblock · jetwidgets for elementor5 May 2021

  • CVE-2023-0034
    21İzleyin

    JetWidgets For Elementor < 1.0.14 - Contributor+ Stored XSS via Shortcode

    OrtaCVSS 5,4İstismar yokEPSS %0

    crocoblock · jetwidgets for elementor13 Şub 2023

  • CVE-2024-2138
    21İzleyin

    JetWidgets For Elementor <= 1.0.15 - Authenticated (Contributor+) Stored Cross-Site Scripting via Animated Box Widget

    OrtaCVSS 5,4İstismar yokEPSS %0

    crocoblock · jetwidgets for elementor9 Nis 2024

  • CVE-2024-2507
    21İzleyin

    JetWidgets For Elementor <= 1.0.16 - Authenticated(Contributor+) Stored Cross-Site Scripting via Widget Button URL

    OrtaCVSS 5,4İstismar yokEPSS %0

    crocoblock · jetwidgets for elementor9 Nis 2024

  • CVE-2024-4626
    21İzleyin

    JetWidgets For Elementor <= 1.0.17 - Authenticated (Contributor+) Stored Cross-Site Scripting via layout_type and id Parameters

    OrtaCVSS 5,4İstismar yokEPSS %0

    crocoblock · jetwidgets for elementor19 Haz 2024

  • CVE-2024-10323
    21İzleyin

    JetWidgets For Elementor <= 1.0.18 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload

    OrtaCVSS 5,4İstismar yokEPSS %0

    crocoblock · jetwidgets for elementor12 Kas 2024

  • CVE-2025-0371
    21İzleyin

    Jet Elements <= 2.7.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets

    OrtaCVSS 5,4İstismar yokEPSS %0

    crocoblock · jetelements21 Oca 2025

  • CVE-2024-7144
    21İzleyin

    JetElements <= 2.6.20 - Authenticated (Contributor+) Stored Cross-Site Scripting

    OrtaCVSS 5,4İstismar yokEPSS %0

    crocoblock · jetelements16 Ağu 2024