BlackTreeCVE IntelligenceOfficial source evidencewordpress.orgVersioned article
Official source article · wordpress.org
WP Human Resource Management – WordPress plugin | WordPress.org
BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.
Read the official article ↗Publisherwordpress.org
Article IDNo stable ID in source URL
Verified snapshot28 Sept 2026, 14:38 UTC
Linked CVEs2
Linked CVE reports
These are source relationships, not a claim that this article fixes every affected product or branch.
- CVE-2025-5956WP Human Resource Management 2.0.0 - 2.2.17 - Missing Authorization to Authenticated (Employee+) Arbitrary User Deletion via ajax_delete_employee Function
- CVE-2025-5953WP Human Resource Management 2.0.0 - 2.2.17 - Missing Authorization to Authenticated (Employee+) Privilege Escalation via wp_ajax_hrm_insert_employee AJAX Action
Source and provenance
Original title: WP Human Resource Management – WordPress plugin | WordPress.org. Captured 28 Sept 2026, 14:38 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.
Open the publisher's current version ↗