PT-2025-14244 · Joomsky · Joomsky Js Job Manager

Published

2025-04-01

·

Updated

2025-04-02

·

CVE-2025-31867

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions JoomSky JS Job Manager versions through 2.0.2
Description The issue affects the access control security levels in JoomSky JS Job Manager, allowing for authorization bypass through user-controlled key exploitation. This occurs due to incorrectly configured access control security levels.
Recommendations For versions through 2.0.2, update to a version that addresses the incorrectly configured access control security levels to prevent authorization bypass. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

IDOR

Weakness Enumeration

Related Identifiers

CVE-2025-31867

Affected Products

Joomsky Js Job Manager