WP JobHunt

Information

Software Type Plugin
Software Slug wp-jobhunt
Software Status Active
Software Author n/a
Software Website themeforest.net
Software Active Installs 8,819
Software Record Last Updated January 27, 2025

12 Vulnerabilities

Title Status CVE ID CVSS Researchers Date
WP JobHunt <= 7.7 - Missing Authorization to Authenticated (Candidate+) Stored Cross-Site Scripting via 'status' Unpatched CVE-2025-7782 7.6 meghnine islem December 20, 2025
WP JobHunt <= 7.7 - Authenticated (Candidate+) Insecure Direct Object Reference Unpatched CVE-2025-7733 4.3 meghnine islem December 20, 2025
WP JobHunt <= 7.6 - Authenticated (Candidate+) Stored Cross-Site Scripting via ‘cs_job_title’ Patched CVE-2025-7781 6.4 meghnine islem October 9, 2025
WP JobHunt <= 7.6 Authenticated (Custom+) Authorization Bypass Patched CVE-2025-7374 5.4 meghnine islem October 9, 2025
WP JobHunt <= 7.2 - Authenticated (Subscriber+) Insecure Direct Object Reference to Arbitrary Account Deletion Unpatched CVE-2025-6585 8.1 meghnine islem July 21, 2025
WP JobHunt <= 7.1 - Unauthenticated Insecure Direct Object Reference Unpatched CVE-2025-39537 7.5 Bonds May 16, 2025
WP JobHunt <= 7.1 - Authentication Bypass to Candidate Unpatched CVE-2024-11283 7.5 Tonn March 13, 2025
WP JobHunt <= 7.1 - Unauthenticated Privilege Escalation via Password Reset/Account Takeover Unpatched CVE-2024-11284 9.8 Tonn March 13, 2025
WP JobHunt <= 7.1 - Unauthenticated Privilege Escalation via Email Update/Account Takeover Unpatched CVE-2024-11285 9.8 Tonn March 13, 2025
WP JobHunt <= 7.1 - Authentication Bypass Unpatched CVE-2024-11286 9.8 Tonn March 13, 2025
JobCareer | Job Board Responsive WordPress Theme < 2.4 - User Enumeration Patched CVE-2018-19487 5.3 Anthony MAESTRE December 4, 2018
JobCareer | Job Board Responsive WordPress Theme < 2.4 - Unauthenticated Arbitrary Password Reset Patched CVE-2018-19488 8.8 Anthony MAESTRE December 4, 2018

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation