WordPress security by component
JobSearch WP Job Board
Plugin description
JobSearch WP Job Board creates job listings, candidate profiles, applications, and recruitment management features in WordPress.
JobSearch WP Job Board (jobsearch-wp-job-board) is a WordPress plugin with 12 published CVE records in this archive. The latest tracked vulnerability was published Apr 25, 2025; the highest published CVSS base score is 10.
Plugin slug:
jobsearch-wp-job-boardLatest vulnerability
CVE-2024-11917: JobSearch WP Job Board: Privilege escalation or authentication bypass
JobSearch WP Job Board is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
| Safe version |
|
||
|---|---|---|---|
| Apr 25, 2025 |
CVE-2024-11917
JobSearch WP Job Board: Privilege escalation or authentication bypass
JobSearch WP Job Board is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
|
See mitigation notes |
CVE8.1
NVDPending
|
| Nov 28, 2024 |
CVE-2024-11925
JobSearch WP Job Board: Privilege escalation or authentication bypass
JobSearch WP Job Board is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
|
See mitigation notes |
CVE9.8
NVDPending
|
| Nov 06, 2024 |
CVE-2024-8615
JobSearch WP Job Board: Dangerous file upload
JobSearch WP Job Board is affected by dangerous file upload. The vulnerable path is reachable without authentication. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise.
|
See mitigation notes |
CVE10.0
NVD9.8
|
| Nov 06, 2024 |
CVE-2024-8614
JobSearch WP Job Board: Dangerous file upload
JobSearch WP Job Board is affected by dangerous file upload. Exploitation requires an authenticated subscriber account. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise.
|
See mitigation notes |
CVE9.9
NVD8.8
|
| Oct 10, 2024 |
CVE-2024-47636
JobSearch: Code execution
JobSearch is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
|
See mitigation notes |
CVE9.8
NVD9.8
|
| Feb 27, 2024 |
CVE-2023-6585
WP JobSearch: A security weakness
WP JobSearch is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE7.5
NVDPending
|
| Feb 27, 2024 |
CVE-2023-6584
WP JobSearch: A security weakness
WP JobSearch is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE7.5
NVDPending
|
| Jun 07, 2023 |
CVE-2021-4364
JobSearch WP Job Board: A security weakness
JobSearch WP Job Board is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Jun 07, 2023 |
CVE-2021-4361
JobSearch WP Job Board: A security weakness
JobSearch WP Job Board is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE8.8
NVD8.8
|
| Jun 07, 2023 |
CVE-2021-4352
JobSearch WP Job Board: A security weakness
JobSearch WP Job Board is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE5.3
NVD5.3
|
| Apr 04, 2022 |
CVE-2022-1168
JobSearch WP JobSearch: Cross-site scripting
JobSearch WP JobSearch is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVEPending
NVD6.1
|
| Jul 12, 2021 |
CVE-2021-24421
WP JobSearch: Cross-site scripting
WP JobSearch is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVEPending
NVD5.4
|