PatchSiren

Crocoblock. Jetimpex Inc. CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Crocoblock. Jetimpex Inc. CVE published 2026-09-17

CVE-2026-66579

A Cross Site Scripting (XSS) vulnerability exists in JetElements For Elementor plugin versions <= 2.9.2.1. This CVE was published on 2026-09-17T14:17:16.653Z and was last modified on 2026-09-19T03:17:14.923Z.

MEDIUM Crocoblock. Jetimpex Inc. CVE published 2026-09-17

CVE-2026-66577

A Cross Site Scripting (XSS) vulnerability exists in the JetSearch plugin version 3.6.3 and earlier. This CVE was published on 2026-09-17T14:17:16.340Z and last modified on 2026-09-19T15:17:00.393Z.

MEDIUM Crocoblock. Jetimpex Inc. CVE published 2026-09-17

CVE-2026-66572

A Cross Site Scripting (XSS) vulnerability exists in JetBlog versions up to 2.4.10, allowing contributors to inject malicious scripts. The CVE record was published on 2026-09-17T14:17:15.680Z and was last modified on 2026-09-19T15:17:00.263Z. The NVD entry is currently Deferred.

HIGH Crocoblock. Jetimpex Inc. CVE published 2026-08-06

CVE-2026-28082

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-06T15:16:51.770Z and has not been modified since then. CVE-2026-28082 is an unauthenticated Cross Site Scripting (XSS) vulnerability affecting JetEngine versions <= 3.8.13.1. The vulnerability has a CVSS score of 7.1 and is considered HIGH severity. This type of vulnerability allows attackers to inj [truncated]

CRITICAL Crocoblock. Jetimpex Inc. CVE published 2026-06-26

CVE-2026-56068

CVE-2026-56068 is a critical unauthenticated SQL injection vulnerability in JetEngine versions <= 3.8.10.2. The vulnerability has a CVSS score of 9.3 and is considered critical. It was published on June 26, 2026, and last modified on June 29, 2026. The CVE record and NVD detail pages provide official information about this vulnerability. A mitigation or vendor reference is available from Patchstack.