CVE-2026-44341: Karnop Gojobs

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

GoJobs is a REST API for a Job Board platform. The application exposes a job retrieval endpoint that allows unauthenticated users to access job details by directly manipulating object identifiers. The endpoint lacks proper authentication and authorization checks, resulting in unauthorized access to job data.

Affected products

  • Karnop Gojobs: up to and including 2cc74a78dcf101c089ea209f2aaefef0674f6b55

Published 2026-05-12. Last modified 2026-06-17.