Crocoblock JetEngine Sensitive Data Exposure Vulnerability
Vulnerability
A vulnerability allowing the exposure of sensitive information has been identified in the Crocoblock JetEngine WordPress plugin, affecting versions through 3.7.0. This issue arises from the insertion of sensitive data into sent information, which could be retrieved by unauthorized users.
Impact
Exploitation of this vulnerability could lead to unauthorized access to sensitive data, which may not be available to regular users. Such exposure could potentially be used to exploit other vulnerabilities within the system.
Remediation
Users of the Crocoblock JetEngine WordPress plugin should update to version 3.7.1.1 or later to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
