Input validation vulnerability in Careerfy – Job Board WordPress Theme 3.9.0

The Careerfy – Job Board WordPress Theme theme for WordPress has a security vulnerability which could allow malicious attackers to inject web scripts into pages which will run whenever someone visits that page. This vulnerability is present in versions up to 3.9.0 of the theme, and is caused by not properly sanitizing and escaping user input in the ‘Academic Level’, ‘Age’, ‘Salary’, ‘Gender’, ‘Industry’, and ‘Full Address’ fields.

Detected in:

Careerfy - Job Board WordPress Theme fixed vulnerable versions: >= * <= 3.9.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.