Crocoblock JetEngine Sensitive Data Exposure Vulnerability

Vulnerability

A vulnerability allowing the exposure of sensitive information has been identified in the Crocoblock JetEngine WordPress plugin, affecting versions through 3.7.0. This issue arises from the insertion of sensitive data into sent information, which could be retrieved by unauthorized users.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive data, which may not be available to regular users. Such exposure could potentially be used to exploit other vulnerabilities within the system.

Remediation

Users of the Crocoblock JetEngine WordPress plugin should update to version 3.7.1.1 or later to address this vulnerability.

Added: Aug 20, 2025, 8:48 AM
Updated: Aug 20, 2025, 8:48 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.