CVE-2024-7761

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
15/05/2025
Last modified:
11/06/2025

Description

In the process of testing the Simple Job Board WordPress plugin before 2.12.2, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:presstigers:simple_job_board:*:*:*:*:*:wordpress:*:* 2.12.2 (excluding)