Access Control Flaw in Crocoblock JetEngine Plugin
CVE-2025-69333
4.3MEDIUM
What is CVE-2025-69333?
A missing authorization issue in the Crocoblock JetEngine plugin poses significant security risks by allowing incorrect access control configurations. Attackers can exploit this vulnerability to bypass security measures, gaining unauthorized access to sensitive areas of the application. This flaw specifically affects versions from n/a up to 3.8.1.1, emphasizing the importance of ensuring proper access control configuration to safeguard against potential exploitation.
Affected Version(s)
JetEngine 0 <= 3.8.1.1