PatchSiren

eyecix CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH eyecix CVE published 2026-07-13

CVE-2026-57383

The CVE-2026-57383 vulnerability is classified as a Stored XSS issue in the JobSearch plugin for WordPress. This vulnerability, with a CVSS score of 7.1, affects versions from n/a through 3.2.9. The vulnerability allows for improper neutralization of input during web page generation, potentially leading to Stored XSS attacks. Users of the affected plugin versions should review and apply updates to prevent [truncated]

CRITICAL eyecix CVE published 2026-06-17

CVE-2026-54186

CVE-2026-54186 is a critical vulnerability in the JobSearch plugin, with a CVSS score of 9.3. It allows unauthenticated attackers to inject SQL, potentially leading to data breaches. The vulnerability was published on June 17, 2026, and has been identified in versions up to 3.2.9 of the plugin. Users of the JobSearch plugin should take immediate action to mitigate this risk. This vulnerability is consider [truncated]