CVE-2023-51545
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Dec 29, 2023
Updated: Jan 5, 2024
CWE ID 352
CWE ID 502
Summary
CVE-2023-51545 is a newly disclosed vulnerability affecting the Job Manager & Career plugin used for managing job board listings and recruitments. This issue combines Cross-Site Request Forgery (CSRF) and Deserialization of Untrusted Data vulnerabilities, allowing unauthenticated attackers to hijack user sessions and execute malicious actions. Affecting versions from n/a through 1.4.4, it is crucial for users to update their plugin to the latest, secure version to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share