WordPress Plugin Vulnerabilities

WP Job Manager < 1.29.3 - Unauthenticated Object Injection

Description

Preauth PHP Object injection - unauthenticated attacker could supply his own payload and system to perform unserialize over its data.

Affects Plugins

Fixed in 1.29.3

References

Classification

Type
OBJECT INJECTION
CWE

Miscellaneous

Submitter
Slavco
Submitter website
Submitter twitter
Verified
No

Timeline

Publicly Published
2018-03-02 (about 8 years ago)
Added
2018-03-15 (about 8 years ago)
Last Updated
2021-09-21 (about 4 years ago)

Other