Metrics
Affected Vendors & Products
No advisories yet.
Solution
Update the WordPress JetEngine plugin to the latest available version (at least 3.8.10).
Workaround
No workaround given by the vendor.
Mon, 28 Sep 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 28 Sep 2026 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated SQL Injection in JetEngine <= 3.8.9.1 versions. | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Crocoblock JetEngine jet-engine allows Blind SQL Injection.This issue affects JetEngine: from n/a through 3.8.9.1. |
Sun, 21 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jetimpex Inc.
Jetimpex Inc. jetengine Wordpress Wordpress wordpress |
|
| Vendors & Products |
Jetimpex Inc.
Jetimpex Inc. jetengine Wordpress Wordpress wordpress |
Wed, 17 Jun 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated SQL Injection in JetEngine <= 3.8.9.1 versions. | |
| Title | WordPress JetEngine plugin <= 3.8.9.1 - SQL Injection vulnerability | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-09-28T05:53:19.587Z
Reserved: 2026-05-27T10:27:01.186Z
Link: CVE-2026-49076
Updated: 2026-06-17T13:37:32.509Z
Status : Deferred
Published: 2026-06-17T13:20:45.790
Modified: 2026-09-28T06:16:31.777
Link: CVE-2026-49076
No data.
OpenCVE Enrichment
Updated: 2026-06-20T23:03:57Z