Wp-jobhunt Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    1
    Critical Level Threats
    2
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-7782

    WP JobHunt <= 7.7 - Missing Authorization to Authenticated (Candidate+) Stored Cross-Site Scripting via 'status'

    Last Modified: Apr 20, 2026
    Published: Dec 20, 2025

    CVE-2025-7733

    WP JobHunt <= 7.7 - Authenticated (Candidate+) Insecure Direct Object Reference

    Last Modified: Apr 21, 2026
    Published: Dec 20, 2025

    CVE-2025-7374

    WP JobHunt <= 7.6 Authenticated (Custom+) Authorization Bypass

    Last Modified: Apr 22, 2026
    Published: Oct 10, 2025

    CVE-2025-7781

    WP JobHunt <= 7.6 - Authenticated (Candidate+) Stored Cross-Site Scripting via ‘cs_job_title’

    Last Modified: Apr 22, 2026
    Published: Oct 10, 2025

    CVE-2018-19488

    The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_reset_pass() function through the admin-ajax.php file, which allows remote unauthenticated attackers to reset the password of a user's account.

    Last Modified: Nov 21, 2024
    Published: Mar 17, 2019
    Items Per Page