Description
The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the save_locsettings function in versions up to, and including, 1.8.1. This makes it possible for unauthenticated attackers to change the settings of the plugin.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-34179 | The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the save_locsettings function in versions up to, and including, 1.8.1. This makes it possible for unauthenticated attackers to change the settings of the plugin. |
References
History
Wed, 08 Apr 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | JobSearch WP Job Board <= 1.8.1 - Missing Authorization to Settings Change | |
| Weaknesses | CWE-284 |
Sat, 28 Dec 2024 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T16:54:41.912Z
Reserved: 2023-06-06T12:43:45.893Z
Link: CVE-2021-4352
Updated: 2024-08-03T17:23:10.658Z
Status : Modified
Published: 2023-06-07T02:15:13.860
Modified: 2026-04-08T18:17:14.910
Link: CVE-2021-4352
No data.
OpenCVE Enrichment
No data.
EUVD