CVE-2025-24622: WordPress Job Board Manager plugin <= 2.1.59 - Cross Site Request Forgery (CSRF) vulnerability
Published Jan 24, 2025
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in PickPlugins Job Board Manager job-board-manager allows Cross Site Request Forgery.This issue affects Job Board Manager: from n/a through <= 2.1.59.
Affected Software
1 affected component
PickPlugins Job Board Manager<=2.1.59
Remediation
Information
Update the WordPress Job Board Manager wordpress plugin to the latest available version (at least 2.1.60).
Event History
Jan 24, 2025
CVE Published
via MITRE·05:24 PM
Data Sourced
via MITRE·05:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-24622?
CVE-2025-24622 is considered a medium severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2025-24622?
To fix CVE-2025-24622, you should update the PickPlugins Job Board Manager to version 2.1.60 or later.
3
What versions are affected by CVE-2025-24622?
CVE-2025-24622 affects all versions of PickPlugins Job Board Manager from n/a through 2.1.59 inclusive.
4
What type of vulnerability is CVE-2025-24622?
CVE-2025-24622 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Can CVE-2025-24622 be exploited remotely?
Yes, CVE-2025-24622 can potentially be exploited remotely without authentication.