← WordPress Vulnerabilities
WordPress security by component

WP Human Resource Management

WP Human Resource Management is a WordPress component with 4 published CVE records in this archive. The latest tracked vulnerability was published Jul 04, 2025; the highest CVE/CNA score is 8.8.

Plugin slug: hrm

CVE-2025-5956: WP Human Resource Management: A security weakness

WP Human Resource Management is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedJul 04, 2025
Safe version guidanceSee mitigation notes
Safe version
Jul 04, 2025 CVE-2025-5956
WP Human Resource Management: A security weakness
WP Human Resource Management is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE6.5
NVD8.1
Jul 04, 2025 CVE-2025-5953
WP Human Resource Management: Privilege escalation or authentication bypass
WP Human Resource Management is affected by privilege escalation or authentication bypass. Exploitation requires an authenticated WordPress account. A successful request can grant permissions or access that the caller should not possess.
See mitigation notes
CVE8.8
NVDPending
Mar 05, 2019 CVE-2019-9574
Hrm: A security weakness
Hrm is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.5
NVD7.5
Mar 05, 2019 CVE-2019-9573
Hrm: A security weakness
Hrm is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.5
NVD7.5