CVE-2018-5695: Wpjobboard

High severity, CVSS 7.2. EPSS: 1.2% chance of exploitation in the next 30 days.

The WpJobBoard plugin 4.4.4 for WordPress allows SQL injection via the order or sort parameter to the wpjb-job or wpjb-alerts module, with a request to wp-admin/admin.php.

Affected products

Published 2018-01-14. Last modified 2026-06-17.