CVE-2021-41844
Published Dec 15, 2021Crocoblock JetEngine before 2.9.1 does not properly validate and sanitize form data.
Vendor/product archive
2 CVEs tagged to crocoblock / jetengine — 1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
Crocoblock JetEngine before 2.9.1 does not properly validate and sanitize form data.
Crocoblock JetEngine before 2.6.1 allows XSS by remote authenticated users via a custom form input.