Extension WordPress

Vulnérabilités Employee, Leave and Recruitment Management System – Crew HRM

Cette page rassemble les failles publiées pour Employee, Leave and Recruitment Management System – Crew HRM, leurs plages de versions affectées et les correctifs signalés dans la base locale.

3Vulnérabilités
0Critiques
3Avec correctif
8,1CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Employee, Leave and Recruitment Management System – Crew HRM

3 fiches

CVE-2026-9237 Moyenne · 4,3
Employee, Leave and Recruitment Management System – Crew HRM

Employee, Leave and Recruitment Management System <= 1.2.2 – Missing Authorization to Authenticated (Subscriber+) Arbitrary Job Deletion via crewhrm_singleJobAction AJAX Action

The Employee, Leave and Recruitment Management System – Crew HRM plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.2.2. This is due to the plugin not properly verifying that a user…

Versions affectées

*-1.2.2

Correctif

1.2.3

Publication

08/07/2026

CVE-2026-27351 Moyenne · 4,3
Employee, Leave and Recruitment Management System – Crew HRM

Employee, Leave and Recruitment Management System – Crew HRM <= 1.2.2 – Missing Authorization

The Employee, Leave and Recruitment Management System – Crew HRM plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.2.2. This makes it possible…

Versions affectées

*-1.2.2

Correctif

1.2.3

Publication

02/06/2026

CVE-2024-43252 Élevée · 8,1
Employee, Leave and Recruitment Management System – Crew HRM

Crew HRM <= 1.1.1 – Unauthenticated PHP Object Injection

The Employee, Leave and Recruitment Management System – Crew HRM plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.1.1 via deserialization of untrusted input. This makes it possible for unauthenticated…

Versions affectées

*-1.1.1

Correctif

1.1.2

Publication

12/08/2024

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités