← WordPress Vulnerabilities
WordPress security by component

JobSearch WP Job Board

JobSearch WP Job Board is a WordPress component with 12 published CVE records in this archive. The latest tracked vulnerability was published Apr 25, 2025; the highest CVE/CNA score is 10.

Plugin slug: jobsearch-wp-job-board

CVE-2024-11917: JobSearch WP Job Board: Privilege escalation or authentication bypass

JobSearch WP Job Board is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.

PublishedApr 25, 2025
Safe version guidanceSee mitigation notes
Safe version
Apr 25, 2025 CVE-2024-11917
JobSearch WP Job Board: Privilege escalation or authentication bypass
JobSearch WP Job Board is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
See mitigation notes
CVE8.1
NVDPending
Nov 28, 2024 CVE-2024-11925
JobSearch WP Job Board: Privilege escalation or authentication bypass
JobSearch WP Job Board is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
See mitigation notes
CVE9.8
NVDPending
Nov 06, 2024 CVE-2024-8615
JobSearch WP Job Board: Dangerous file upload
JobSearch WP Job Board is affected by dangerous file upload. The vulnerable path is reachable without authentication. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise.
See mitigation notes
CVE10.0
NVD9.8
Nov 06, 2024 CVE-2024-8614
JobSearch WP Job Board: Dangerous file upload
JobSearch WP Job Board is affected by dangerous file upload. Exploitation requires at least subscriber-level access. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise.
See mitigation notes
CVE9.9
NVD8.8
Oct 10, 2024 CVE-2024-47636
JobSearch: Code execution
JobSearch is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE9.8
NVD9.8
Feb 27, 2024 CVE-2023-6585
WP JobSearch: A security weakness
WP JobSearch is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.5
NVDPending
Feb 27, 2024 CVE-2023-6584
WP JobSearch: A security weakness
WP JobSearch is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.5
NVDPending
Jun 07, 2023 CVE-2021-4364
JobSearch WP Job Board: A security weakness
JobSearch WP Job Board is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Jun 07, 2023 CVE-2021-4361
JobSearch WP Job Board: A security weakness
JobSearch WP Job Board is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE8.8
NVD8.8
Jun 07, 2023 CVE-2021-4352
JobSearch WP Job Board: A security weakness
JobSearch WP Job Board is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVD5.3
Apr 04, 2022 CVE-2022-1168
JobSearch WP JobSearch: Cross-site scripting
JobSearch WP JobSearch is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.1
NVD6.1
Jul 12, 2021 CVE-2021-24421
WP JobSearch: Cross-site scripting
WP JobSearch is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE5.4
NVD5.4