Persistent XSS Vulnerability in WPJobBoard Plugin for WordPress
CVE-2020-9019
6.1MEDIUM
What is CVE-2020-9019?
The WPJobBoard plugin version 5.5.3 for WordPress is susceptible to a Persistent Cross-Site Scripting (XSS) attack via the Add Job form. Attackers can exploit this vulnerability by inserting malicious scripts into the 'Title' and 'Description' fields, which are then rendered in the browser of any user who views the affected job postings. This allows for the potential theft of user data, session cookies, and other sensitive information, severely compromising the security and integrity of the WordPress site.