← back
CVE-2022-2544

Ninja Job Board < 1.3.3 - Resume Disclosure via Directory Listing

EPSS 3.2%CWE-425
The Ninja Job Board WordPress plugin before 1.3.3 does not protect the directory where it stores uploaded resumes, making it vulnerable to unauthenticated Directory Listing which allows the download of uploaded resumes.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →