Home/Product/eyecix jobsearch wp job board
Product

eyecix jobsearch wp job board

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-8615
< 2.6.8
The JobSearch WP Job Board plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the
10.0CRITICAL
CVE-2024-8614
< 2.6.8
The JobSearch WP Job Board plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the
9.9CRITICAL
CVE-2024-43929
< 2.5.6
Missing Authorization vulnerability in eyecix JobSearch allows Accessing Functionality Not Properly Constrained by ACLs.This issue
6.5MEDIUM
CVE-2024-43928
< 2.5.6
Missing Authorization vulnerability in eyecix JobSearch allows Exploiting Incorrectly Configured Access Control Security Levels.Th
5.4MEDIUM
CVE-2024-47636
<= 2.5.9
Deserialization of Untrusted Data vulnerability in eyecix JobSearch wp-jobsearch allows Object Injection.This issue affects JobSea
9.8CRITICAL
CVE-2024-43931
< 2.5.4
Deserialization of Untrusted Data vulnerability in eyecix JobSearch allows Object Injection.This issue affects JobSearch: from n/a
9.8CRITICAL
CVE-2023-6585
< 2.3.4
The WP JobSearch WordPress plugin before 2.3.4 does not validate files to be uploaded, which could allow unauthenticated attackers
7.5HIGH
CVE-2023-6584
< 2.3.4
The WP JobSearch WordPress plugin before 2.3.4 does not prevent attackers from logging-in as any users with the only knowledge of
7.5HIGH
CVE-2021-4364
<= 1.8.1
The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the job
4.3MEDIUM
CVE-2021-4361
<= 1.8.1
The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the job
8.8HIGH
CVE-2021-4352
<= 1.8.1
The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the sav
5.3MEDIUM
CVE-2022-1168
< 1.5.1
There is a Cross-Site Scripting vulnerability in the JobSearch WP JobSearch WordPress plugin before 1.5.1.
6.1MEDIUM
CVE-2021-24421
< 1.7.4
The WP JobSearch WordPress plugin before 1.7.4 did not sanitise or escape multiple of its parameters from the my-resume page befor
5.4MEDIUM
threatengine.sh