Show filters
13 Total Results
Displaying 1-10 of 13
Sort by:
Attacker Value
Unknown

CVE-2025-22209

Disclosure Date: February 15, 2025 (last updated February 23, 2025)
A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.3 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the 'searchpaymentstatus' parameter in the Employer Payment History search feature.
0
Attacker Value
Unknown

CVE-2025-22208

Disclosure Date: February 15, 2025 (last updated February 23, 2025)
A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.3 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the 'filter_email' parameter in the GDPR Erase Data Request search feature.
0
Attacker Value
Unknown

CVE-2025-22206

Disclosure Date: February 04, 2025 (last updated February 05, 2025)
A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.2 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the 'fieldfor' parameter in the GDPR Field feature.
0
Attacker Value
Unknown

CVE-2023-28689

Disclosure Date: December 09, 2024 (last updated December 21, 2024)
Missing Authorization vulnerability in JoomSky JS Job Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JS Job Manager: from n/a through 2.0.0.
0
Attacker Value
Unknown

CVE-2023-31087

Disclosure Date: November 09, 2023 (last updated November 15, 2023)
Cross-Site Request Forgery (CSRF) vulnerability in JoomSky JS Job Manager plugin <= 2.0.0 versions.
Attacker Value
Unknown

CVE-2023-25963

Disclosure Date: June 16, 2023 (last updated October 08, 2023)
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in JoomSky JS Job Manager plugin <= 2.0.0 versions.
Attacker Value
Unknown

CVE-2018-21002

Disclosure Date: August 27, 2019 (last updated November 27, 2024)
The js-support-ticket plugin before 2.0.6 for WordPress has CSRF.
0
Attacker Value
Unknown

CVE-2018-20974

Disclosure Date: August 16, 2019 (last updated November 27, 2024)
The js-jobs plugin before 1.0.7 for WordPress has CSRF.
0
Attacker Value
Unknown

CVE-2019-17527

Disclosure Date: March 28, 2019 (last updated November 27, 2024)
dataForDepandantField in models/custormfields.php in the JS JOBS FREE extension before 1.2.7 for Joomla! allows SQL Injection via the index.php?option=com_jsjobs&task=customfields.getfieldtitlebyfieldandfieldfo child parameter.
Attacker Value
Unknown

CVE-2018-9183

Disclosure Date: April 02, 2018 (last updated November 26, 2024)
The Joom Sky JS Jobs extension before 1.2.1 for Joomla! has XSS.
0