CVE-2024-37241: WordPress WP Job Manager Resume Manager plugin <= 2.1.0 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in Automattic WP Job Manager - Resume Manager allows Cross Site Request Forgery.This issue affects WP Job Manager - Resume Manager: from n/a through 2.1.0.
Other sources
Cross-Site Request Forgery (CSRF) vulnerability in Automattic WP Job Manager - Resume Manager wp-job-manager-resumes allows Cross Site Request Forgery.This issue affects WP Job Manager - Resume Manager: from n/a through <= 2.1.0.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37241?
CVE-2024-37241 is a medium severity Cross-Site Request Forgery (CSRF) vulnerability affecting WP Job Manager - Resume Manager.
How do I fix CVE-2024-37241?
To fix CVE-2024-37241, update the WP Job Manager - Resume Manager plugin to the latest version beyond 2.1.0.
What versions are affected by CVE-2024-37241?
CVE-2024-37241 affects WP Job Manager - Resume Manager versions from n/a up to and including 2.1.0.
What is a Cross-Site Request Forgery vulnerability?
A Cross-Site Request Forgery vulnerability allows an attacker to trick a user into performing actions without their consent on a web application.
Who is the vendor for the software affected by CVE-2024-37241?
The vendor for the software affected by CVE-2024-37241 is Automattic, the creator of the WP Job Manager - Resume Manager.