cleantalk
Vulnerabilities and Security Researches

Jobs for WordPress, CVE-2024-0820

CVE, Research URL

CVE-2024-0820

Application

Jobs for WordPress

Published on
Mar 19, 2024
Research Description
The Jobs for WordPress plugin before 2.7.4 does not sanitise and escape some parameters, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks
Affected versions
Min -, max 2.7.4.
Status
vulnerable