CVE-2025-0806
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Jan 29, 2025
Updated: Feb 11, 2025
CWE ID 94
CWE ID 79
Summary
CVE-2025-0806 is a recently disclosed vulnerability in the Job Recruitment 1.0 software by code-projects. This issue is rated as problematic and impacts the processing of the file _call_job_search_ajax.php. A cross-site scripting (XSS) vulnerability was identified, which can be triggered by manipulating the argument job_type. An attacker can exploit this remotely, potentially injecting malicious scripts and stealing sensitive user data. The exploit for this vulnerability is publicly known, increasing the risk for exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Anisha