Vulnerabilities > Astoundify > Jobify

DATE CVE VULNERABILITY TITLE RISK
2025-01-24 CVE-2024-13698 Missing Authorization vulnerability in Astoundify Jobify
The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'download_image_via_ai' and 'generate_image_via_ai' functions in all versions up to, and including, 4.2.7.
network
low complexity
astoundify CWE-862
6.5
2024-12-09 CVE-2024-52480 Unspecified vulnerability in Astoundify Jobify
Missing Authorization vulnerability in Astoundify Jobify - Job Board WordPress Theme.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.
network
low complexity
astoundify
critical
9.8
2024-12-02 CVE-2024-52478 Cross-site Scripting vulnerability in Astoundify Jobify
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ben Marshall Jobify - Job Board WordPress Theme allows Stored XSS.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.
network
low complexity
astoundify CWE-79
5.4
2024-12-02 CVE-2024-52479 Cross-Site Request Forgery (CSRF) vulnerability in Astoundify Jobify
Cross-Site Request Forgery (CSRF) vulnerability in Ben Marshall Jobify - Job Board WordPress Theme allows Cross Site Request Forgery.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.
network
low complexity
astoundify CWE-352
8.8
2024-11-28 CVE-2024-52481 Unspecified vulnerability in Astoundify Jobify
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Astoundify Jobify - Job Board WordPress Theme allows Relative Path Traversal.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.
network
low complexity
astoundify
7.5