{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-03T22:09:46.332","vulnerabilities":[{"cve":{"id":"CVE-2024-11283","sourceIdentifier":"security@wordfence.com","published":"2025-03-14T05:15:37.577","lastModified":"2025-07-08T15:25:15.597","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"The WP JobHunt plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 7.1. This is due to wp_ajax_google_api_login_callback function not properly verifying a user's identity prior to authenticating them. This makes it possible for unauthenticated attackers to access arbitrary candidate accounts."},{"lang":"es","value":"El complemento WP JobHunt para WordPress es vulnerable a la omisión de autenticación en todas las versiones hasta la 7.1 incluida. Esto se debe a que la función wp_ajax_google_api_login_callback no verifica correctamente la identidad del usuario antes de autenticarlo. Esto permite que atacantes no autenticados accedan a cuentas de candidatos arbitrarias."}],"metrics":{"cvssMetricV31":[{"source":"security@wordfence.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}]},"weaknesses":[{"source":"security@wordfence.com","type":"Secondary","description":[{"lang":"en","value":"CWE-289"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:chimpgroup:jobcareer:*:*:*:*:*:wordpress:*:*","versionEndIncluding":"7.1","matchCriteriaId":"FBA58D67-D1AE-40A0-8419-F20AFBA49D13"}]}]}],"references":[{"url":"https://themeforest.net/item/jobcareer-job-board-responsive-wordpress-theme/14221636","source":"security@wordfence.com","tags":["Product"]},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/cfa487fb-c014-47f1-9537-73881ede30b4?source=cve","source":"security@wordfence.com","tags":["Third Party Advisory"]}]}}]}