Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total6
Critical0
High1
Medium5
Reset
Showing 1-6 of 6 records
Threat Entry Updated 2025-09-11

CVE-2025-8318 - Jobify Plugin

The Jobify plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘keyword’ parameter in all versions up to, and including, 1.4.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Jobify

CVE-2025-8318

MEDIUM CVSS 6.4 2025-09-11
Threat Entry Updated 2025-02-07

CVE-2024-13698 - Jobify Plugin

The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'download_image_via_ai' and 'generate_image_via_ai' functions in all versions up to, and including, 4.2.7. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application to upload files in an image format, and to generate AI images using the site's OpenAI key.

PLUGIN Jobify

CVE-2024-13698

MEDIUM CVSS 6.5 2025-01-24
Threat Entry Updated 2025-02-07

CVE-2024-52480 - Jobify Plugin

Missing Authorization vulnerability in Astoundify Jobify - Job Board WordPress Theme.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.

PLUGIN Jobify

CVE-2024-52480

MEDIUM CVSS 5.3 2024-12-09
Threat Entry Updated 2025-02-10

CVE-2024-52478 - Jobify Plugin

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ben Marshall Jobify - Job Board WordPress Theme allows Stored XSS.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.

PLUGIN Jobify

CVE-2024-52478

MEDIUM CVSS 6.5 2024-12-02
Threat Entry Updated 2025-02-10

CVE-2024-52479 - Jobify Plugin

Cross-Site Request Forgery (CSRF) vulnerability in Ben Marshall Jobify - Job Board WordPress Theme allows Cross Site Request Forgery.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.

PLUGIN Jobify

CVE-2024-52479

MEDIUM CVSS 4.3 2024-12-02
Threat Entry Updated 2025-02-10

CVE-2024-52481 - Jobify Plugin

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Astoundify Jobify - Job Board WordPress Theme allows Relative Path Traversal.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.

PLUGIN Jobify

CVE-2024-52481

HIGH CVSS 7.5 2024-11-28
Scroll to top