Description
The Resume Builder WordPress plugin through 3.1.1 does not sanitize and escape some parameters related to Resume, which could allow users with a role as low as subscriber to perform Stored XSS attacks against higher privilege users
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12179 | The Resume Builder WordPress plugin through 3.1.1 does not sanitize and escape some parameters related to Resume, which could allow users with a role as low as subscriber to perform Stored XSS attacks against higher privilege users |
References
History
Mon, 05 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-05-05T16:11:08.870Z
Reserved: 2023-01-05T08:01:01.093Z
Link: CVE-2023-0078
Updated: 2024-08-02T04:54:32.603Z
Status : Modified
Published: 2023-03-06T14:15:10.333
Modified: 2025-05-05T16:15:23.467
Link: CVE-2023-0078
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.
EUVD