CVE-2025-69333

WordPress JetEngine plugin <= 3.8.1.1 - Broken Access Control vulnerability

Missing Authorization vulnerability in Crocoblock JetEngine allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JetEngine: from n/a through 3.8.1.1.


We have discovered 80,764 live websites that are affected by CVE-2025-69333.

Run a Free Instant Scan




Affected Software

Product  Crocoblock JetEngine
Category Wordpress Plugins
Vulnerable Domains80,764 live websites (96% of Crocoblock JetEngine install base)
Vulnerable Versions
  • from 0 through 3.8.1.1
Vulnerable Versions Count176 versions ( 98% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jan 7, 2026
  • Updated - Jan 7, 2026

Credits

  • Bonds | Patchstack Bug Bounty Program (finder)

Website Distribution by Country

Number of websites using CVE-2025-69333
United States19,172 websites



Brazil7,043 websites
Germany6,870 websites
Netherlands3,820 websites
France3,803 websites
Spain3,704 websites
GB3,402 websites
Israel2,589 websites
Iran2,545 websites
Italy2,183 websites

Website Distribution by TLD

Number of websites using CVE-2025-69333
.com29,143 websites
.com.br6,279 websites
.de3,783 websites
.nl3,480 websites
.org3,173 websites
.co.uk2,032 websites
.it1,678 websites
.fr1,639 websites
.es1,526 websites
.com.au1,372 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2025-69333

Top websites that are affected by CVE-2025-69333. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
******************.de Germany**,***
******************.com United States**,***
****.com United States**,***
******.com United States**,***
*****.com United States**,***
**************.com United States**,***
*****************.org United States**,***
******.com United States**,***
************.com United States**,***
*************.com United States**,***
See full domain list

FAQ

CVE-2025-69333 is Missing Authorization in Crocoblock JetEngine
A total of 80,764 websites have been identified as vulnerable to CVE-2025-69333, based on global website indexing conducted by WebTechSurvey.
The Crocoblock JetEngine is affected by the CVE-2025-69333 vulnerability.
Crocoblock JetEngine versions up to and including 3.8.1.1 are vulnerable to CVE-2025-69333.