CVE-2024-11283 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

The WP JobHunt plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 7.1. This is due to wp_ajax_google_api_login_ca…
High CVSS: 7.5

CVE-2024-11283

The WP JobHunt plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 7.1. This is due to wp_ajax_google_api_login_callback function not properly verifying a user's identity prior to authenticating them. This makes it possible for unauthenticated attackers to access arbitrary candidate accounts.
Vendor
Chimpgroup
Product
Jobcareer
CWE
CWE-289
Yayın Tarihi
2025-03-14 05:15:37
Güncelleme
2025-07-08 15:25:15
Source Identifier
security@wordfence.com
KEV Date Added
-

Kategoriler

Referanslar