MEDIUM
santifer
CVE published 2026-09-10
CVE-2026-88061
CVE-2026-88061 is a vulnerability in the career-ops open-source AI-assisted job search and application management tool. The vulnerability allows unauthenticated command execution as the dashboard user due to exposed command-spawning and user-file-writing /api routes without validating request origin or restricting clients to loopback addresses. This issue is fixed in version 0.8.0.