CVE-2024-0820

All FrameworksWordPressCWE-OtherCVE-2024-0820

CVE-2024-0820

State: PUBLISHED · Published: 2024-03-18 · Updated: 2025-03-28 · Assigner: WPScan
Description
The Jobs for WordPress plugin before 2.7.4 does not sanitise and escape some parameters, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/0xxx/CVE-2024-0820.json