CVE-2024-43931: WordPress JobSearch WP Job Board WordPress Plugin plugin <= 2.5.3 - PHP Object Injection vulnerability
Published Aug 29, 2024
·Updated
Deserialization of Untrusted Data vulnerability in eyecix JobSearch allows Object Injection.This issue affects JobSearch: from n/a through 2.5.3.
Affected Software
1 affected component
Eyecix JobSearch WP Job Board WordPress<2.5.4
Remediation
Information
Update to 2.5.4 or a higher version.
Event History
Aug 29, 2024
CVE Published
via MITRE·03:04 PM
Data Sourced
via MITRE·03:04 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-43931?
CVE-2024-43931 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2024-43931?
To fix CVE-2024-43931, you should update the Eyecix JobSearch plugin to version 2.5.4 or later.
3
Which versions of JobSearch are affected by CVE-2024-43931?
CVE-2024-43931 affects JobSearch versions up to and including 2.5.3.
4
What type of vulnerability is CVE-2024-43931?
CVE-2024-43931 is a deserialization of untrusted data vulnerability that allows object injection.
5
Who is affected by CVE-2024-43931?
Any website using the vulnerable Eyecix JobSearch plugin version 2.5.3 or earlier is potentially impacted by CVE-2024-43931.