Extension WordPress
Vulnérabilités JobWP – Job Board Plugin for WordPress | Job Listings, Career Page & Applications
Cette page rassemble les failles publiées pour JobWP – Job Board Plugin for WordPress | Job Listings, Career Page & Applications, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de JobWP – Job Board Plugin for WordPress | Job Listings, Career Page & Applications
8 fiches
JobWP <= 2.4.5 – Unauthenticated Stored Cross-Site Scripting
The JobWP plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.4.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts…
*-2.4.5
2.4.6
21/01/2026
JobWP <= 2.4.3 – Cross-Site Request Forgery
The JobWP – Job Board, Job Listing, Career Page and Recruitment Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.4.3. This is due to missing or incorrect nonce validation…
*-2.4.3
2.4.4
22/08/2025
JobWP <= 2.4.0 – Cross-Site Request Forgery
The JobWP – Job Board, Job Listing, Career Page and Recruitment Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.4.0. This is due to missing or incorrect nonce validation…
*-2.4.0
2.4.1
19/06/2025
JobWP – Job Board, Job Listing, Career Page and Recruitment Plugin <= 2.3.9 – Unauthenticated SQL Injection
The JobWP – Job Board, Job Listing, Career Page and Recruitment Plugin plugin for WordPress is vulnerable to SQL Injection via the 'jobwp_upload_resume' parameter in all versions up to, and including, 2.3.9 due to insufficient escaping on the…
*-2.3.9
2.4.0
18/04/2025
JobWP <= 2.3.9 – Cross-Site Request Forgery
The JobWP – Job Board, Job Listing, Career Page and Recruitment Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.3.9. This is due to missing or incorrect nonce validation…
*-2.3.9
2.4.0
04/04/2025
WordPress Job Board and Recruitment Plugin – JobWP <= 2.1 – Sensitive Information Exposure
The WordPress Job Board and Recruitment Plugin – JobWP plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.1. This makes it possible for unauthenticated attackers to extract sensitive user data…
*-2.1
2.2
23/11/2023
WordPress Job Board and Recruitment Plugin – JobWP <= 2.0 – Arbitrary File Upload via 'jobwp_upload_resume'
The WordPress Job Board and Recruitment Plugin plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'jobwp_upload_resume' function in versions up to, and including, 2.0. This makes it possible for…
*-2.0
2.1
01/08/2023
Freemius SDK <= 2.5.9 – Reflected Cross-Site Scripting via fs_request_get
The Freemius SDK for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘fs_request_get’ function in versions up to, and including, 2.5.9 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to…
*-1.9
2.0
18/07/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.