cleantalk
Vulnerabilities and Security Researches

Jetpack CRM – Clients, Leads, Invoices, Billing, Email Marketing, & Automation, CVE-2023-27429

CVE, Research URL

CVE-2023-27429

Published on
Jun 21, 2023
Research Description
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Automattic - Jetpack CRM team Jetpack CRM plugin <= 5.4.4 versions.
Affected versions
max 5.5.0.
Status
vulnerable