Description
The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the jobsearch_job_integrations_settin_save AJAX action in versions up to, and including, 1.8.1. This makes it possible for authenticated attackers to update arbitrary options on the site.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-34188 | The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the jobsearch_job_integrations_settin_save AJAX action in versions up to, and including, 1.8.1. This makes it possible for authenticated attackers to update arbitrary options on the site. |
References
History
Wed, 08 Apr 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | JobSearch WP Job Board <= 1.8.1 - Missing Authorization to Arbitrary Options Update | |
| Weaknesses | CWE-284 |
Mon, 23 Dec 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T17:04:10.389Z
Reserved: 2023-06-06T12:54:34.197Z
Link: CVE-2021-4361
Updated: 2024-08-03T17:23:10.713Z
Status : Modified
Published: 2023-06-07T02:15:14.363
Modified: 2026-04-08T18:17:16.377
Link: CVE-2021-4361
No data.
OpenCVE Enrichment
No data.
EUVD