CVE-2024-36691: Ppgo Jobs Project Ppgo Jobs
Medium severity, CVSS 6.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Insecure permissions in the AdminController.AjaxSave() method of PPGo_Jobs v2.8.0 allows authenticated attackers to arbitrarily modify users' account information.
Affected products
- Ppgo Jobs Project Ppgo Jobs: version 2.8.0 only
Published 2024-06-12. Last modified 2026-06-17.