CVE-2023-28534: WordPress WP Job Portal Plugin <= 2.0.0 is vulnerable to Cross Site Scripting (XSS)
Auth. (subscriber+) Stored Cross-Site Scripting (XSS) vulnerability in WP Job Portal WP Job Portal – A Complete Job Board plugin <= 2.0.0 versions.
Other sources
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpjobportal WP Job Portal wp-job-portal allows DOM-Based XSS.This issue affects WP Job Portal: from n/a through <= 2.0.5.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this security issue?
The vulnerability ID of this security issue is CVE-2023-28534.
What is the title of this vulnerability?
The title of this vulnerability is Auth. (subscriber+) Stored Cross-Site Scripting (XSS) vulnerability in WP Job Portal WP Job Portal –…
What is the severity of CVE-2023-28534?
The severity of CVE-2023-28534 is medium with a severity value of 5.4.
What software is affected by CVE-2023-28534?
The software affected by CVE-2023-28534 is WP Job Portal WP Job Portal – A Complete Job Board plugin version 2.0.0 and below.
Is there a fix for this vulnerability?
Yes, a fix for this vulnerability is available. Please refer to the following reference for more information: [link to patchstack.com]