PatchSiren

Jobster Marketplace CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Jobster Marketplace CVE published 2026-06-17

CVE-2026-22340

A critical vulnerability was discovered in the WPJobster WordPress theme, versions up to 6.3.5. This vulnerability allows unauthenticated attackers to inject malicious SQL code, potentially leading to data breaches and unauthorized access. With a CVSS score of 9.3, this issue is considered critical and requires immediate attention. WPJobster users must take swift action to protect their installations. The [truncated]

HIGH Jobster Marketplace CVE published 2026-06-17

CVE-2026-22339

CVE-2026-22339 is an Unauthenticated Cross Site Scripting (XSS) vulnerability in WPJobster versions up to 6.3.5. The vulnerability has a CVSS score of 7.1 and is classified as HIGH severity. This type of vulnerability could allow an attacker to inject malicious scripts into a website, potentially leading to unauthorized actions or data breaches. Users of WPJobster version 6.3.5 or earlier should review an [truncated]