CVE-2022-1169: Careerfy < 3.9.0 - Unauthenticated Reflected Cross-Site Scripting (XSS)
Published Apr 4, 2022
·Updated
There is a XSS vulnerability in Careerfy.
Affected Software
1 affected component
Eyecix Careerfy Wordpress<3.9.0
Event History
Apr 4, 2022
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2022-1169?
CVE-2022-1169 is a XSS vulnerability in Careerfy.
2
How severe is CVE-2022-1169?
CVE-2022-1169 has a severity keyword of medium and a CVSS score of 6.1.
3
What software is affected by CVE-2022-1169?
The Eyecix Careerfy WordPress theme versions up to 3.9.0 are affected by CVE-2022-1169.
4
How can I fix CVE-2022-1169?
To fix CVE-2022-1169, update Careerfy theme to a version beyond 3.9.0 or apply a patch provided by the vendor.