Input validation vulnerability in JobSearch WP Job Board 1.5.1

The JobSearch WP Job Board plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This type of attack allows an attacker to inject malicious code into a website, allowing the malicious code to run when a user accesses the website. This vulnerability exists in versions up to and including 1.5.1 of the plugin, which is due to a lack of proper input checks and output escaping in the ‘Offered Salary’, ‘Career Level’, ‘Experience’, ‘Gender’, ‘Industry’, ‘Qualifications’, ‘Job Description’, and ‘Full Address’ fields that are found on the job listing form.

Detected in:

JobSearch WP Job Board open vulnerable versions: >= * <= 1.5.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.