CVE-2025-14467 - WP Job Portal <= 2.3.9 - Authenticated (Editor+) Stored Cross-Site Scripting via Job Description Field
CVE ID : CVE-2025-14467
Published : Dec. 12, 2025, 4:15 a.m. | 2 hours, 30 minutes ago
Description : The WP Job Portal plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.3.9. This is due to the plugin explicitly whitelisting the `
Published : Dec. 12, 2025, 4:15 a.m. | 2 hours, 30 minutes ago
Description : The WP Job Portal plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.3.9. This is due to the plugin explicitly whitelisting the `