WordPress JetBlocks For Elementor Plugin <= 1.3.8 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-48756
What is CVE-2023-48756?
A reflected Cross-Site Scripting (XSS) vulnerability exists in the Crocoblock JetBlocks plugin for Elementor. This vulnerability allows malicious actors to inject arbitrary web scripts into pages viewed by unsuspecting users. When users interact with affected pages, these scripts can be executed, potentially leading to data theft or session hijacking. The affected versions of JetBlocks for Elementor extend from n/a through 1.3.8. Website administrators are advised to update to the latest version to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
JetBlocks For Elementor <= 1.3.8
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved