Medium severity5.4NVD Advisory· Published Aug 16, 2021· Updated Jun 17, 2026
CVE-2021-38607
CVE-2021-38607
Description
Crocoblock JetEngine before 2.6.1 allows XSS by remote authenticated users via a custom form input.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Crocoblock/JetEnginedescription
- Range: <2.6.1
Patches
Vulnerability mechanics
References
2- crocoblock.com/changelog/nvdRelease NotesVendor Advisory
- crocoblock.com/plugins/jetengine/nvdProduct
News mentions
0No linked articles in our index yet.