CVE-2023-51545: WordPress Job Manager & Career Plugin <= 1.4.4 is vulnerable to Cross Site Request Forgery (CSRF) leading to PHP Object Injection
Cross-Site Request Forgery (CSRF), Deserialization of Untrusted Data vulnerability in ThemeHigh Job Manager & Career – Manage job board listings, and recruitments.This issue affects Job Manager & Career – Manage job board listings, and recruitments: from n/a through 1.4.4.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-51545?
CVE-2023-51545 is classified as a Cross-Site Request Forgery (CSRF) vulnerability that can potentially lead to unauthorized actions on behalf of users.
How do I fix CVE-2023-51545?
To fix CVE-2023-51545, update the ThemeHigh Job Manager & Career plugin to version 1.4.5 or later.
What type of data is affected by CVE-2023-51545?
CVE-2023-51545 affects untrusted data that can be deserialized, potentially leading to PHP object injection.
Which versions of the Job Manager & Career plugin are vulnerable to CVE-2023-51545?
CVE-2023-51545 affects all versions of the Job Manager & Career plugin up to and including version 1.4.4.
What can attackers achieve with CVE-2023-51545?
Attackers exploiting CVE-2023-51545 may be able to perform unauthorized actions on the site by leveraging CSRF attacks.