cleantalk
Vulnerabilities and Security Researches

WP Human Resource Management, CVE-2019-9574

CVE, Research URL

CVE-2019-9574

Published on
Mar 06, 2019
Research Description
The WP Human Resource Management plugin before 2.2.6 for WordPress does not ensure that a leave modification occurs in the context of the Administrator or HR Manager role.
Affected versions
Min -, max 2.2.6.
Status
vulnerable