📦 Wp Job Portal

by Wpjobportal

🔍 What is Wp Job Portal?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-48274

CRITICAL CVSS 9.3 Jun 17, 2025

This SQL injection vulnerability in the WP Job Portal WordPress plugin allows attackers to execute arbitrary SQL commands through the application. All WordPress sites running WP Job Portal versions up...

CVE-2024-7950

CRITICAL CVSS 9.8 Sep 4, 2024

This vulnerability in the WP Job Portal WordPress plugin allows unauthenticated attackers to execute arbitrary PHP code on the server through local file inclusion, modify any plugin settings, and crea...

CVE-2023-4490

CRITICAL CVSS 9.8 Sep 25, 2023

This vulnerability allows unauthenticated attackers to execute arbitrary SQL commands on WordPress sites using WP Job Portal plugin versions before 2.0.6. Attackers can potentially read, modify, or de...

CVE-2025-26935

HIGH CVSS 7.5 Feb 25, 2025

This CVE describes a path traversal vulnerability in the WP Job Portal WordPress plugin that allows attackers to perform local file inclusion (LFI) attacks. The vulnerability enables reading arbitrary...

CVE-2024-11711

HIGH CVSS 7.5 Dec 14, 2024

This SQL injection vulnerability in the WP Job Portal WordPress plugin allows unauthenticated attackers to inject malicious SQL queries via the 'resumeid' parameter. Attackers can extract sensitive da...

CVE-2024-13873

MEDIUM CVSS 4.3 Feb 22, 2025

This vulnerability allows authenticated WordPress users with Subscriber-level access or higher to delete profile photos from other user accounts. It affects all versions of the WP Job Portal plugin up...

CVE-2024-13372

MEDIUM CVSS 5.3 Feb 1, 2025

This vulnerability allows unauthenticated attackers to download user resumes without authorization in the WP Job Portal WordPress plugin. It affects all WordPress sites using this plugin up to version...

CVE-2024-13428

MEDIUM CVSS 5.3 Feb 1, 2025

This vulnerability allows unauthenticated attackers to delete arbitrary company logos in the WP Job Portal WordPress plugin due to missing validation on user-controlled keys. All WordPress sites using...

CVE-2024-12131

MEDIUM CVSS 4.3 Jan 7, 2025

This vulnerability allows authenticated WordPress users with Subscriber-level access or higher to submit resumes on behalf of other applicants when applying for jobs through the WP Job Portal plugin. ...

CVE-2024-12132

MEDIUM CVSS 4.3 Jan 3, 2025

This vulnerability in the WP Job Portal WordPress plugin allows authenticated users with Subscriber-level access or higher to create job listings for companies they don't own or manage. Attackers can ...

CVE-2024-11715

MEDIUM CVSS 4.8 Dec 14, 2024

This vulnerability in the WP Job Portal WordPress plugin allows unauthenticated attackers to assign themselves the employer role without proper authorization. It affects all WordPress sites using WP J...

CVE-2024-11713

MEDIUM CVSS 4.9 Dec 14, 2024

This SQL injection vulnerability in the WP Job Portal WordPress plugin allows authenticated attackers with Administrator-level access to execute arbitrary SQL queries via the 'page_id' parameter. Atta...

CVE-2024-11710

MEDIUM CVSS 4.9 Dec 14, 2024

This SQL injection vulnerability in the WP Job Portal WordPress plugin allows authenticated attackers with Administrator privileges to execute arbitrary SQL queries. Attackers can extract sensitive da...

CVE-2024-52389

MEDIUM CVSS 6.5 Nov 18, 2024

This stored XSS vulnerability in the WP Job Portal WordPress plugin allows attackers to inject malicious scripts into web pages that are then executed when other users view those pages. All WordPress ...

CVE-2024-35759

MEDIUM CVSS 5.9 Jun 21, 2024

This stored cross-site scripting (XSS) vulnerability in the WP Job Portal WordPress plugin allows attackers to inject malicious scripts into web pages. When exploited, these scripts execute in the bro...