Job Recruitment Code Projects Job Recruitment

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Code Projects Job Recruitment.

By the Year

In 2025 there have been 8 vulnerabilities in Code Projects Job Recruitment with an average score of 7.2 out of ten. Last year, in 2024 Job Recruitment had 8 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Job Recruitment in 2025 could surpass last years number. Last year, the average CVE base score was greater by 1.58

Year Vulnerabilities Average Score
2025 8 7.24
2024 8 8.81

It may take a day or so for new Job Recruitment vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Code Projects Job Recruitment Security Vulnerabilities

Job Recruitment 1.0 XSS in load_user-profile.php (remote)
CVE-2025-1190 6.1 - Medium - February 12, 2025

A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability affects unknown code of the file /_parse/load_user-profile.php. The manipulation leads to cross site scripting. The attack can be initiated remotely. Multiple parameters might be affected.

XSS

SQL injection in code-projects Job Recruitment 1.0 _parse/load_user-profile.php
CVE-2025-1162 7.5 - High - February 10, 2025

A vulnerability classified as critical has been found in code-projects Job Recruitment 1.0. This affects an unknown part of the file /\_parse/load\_user-profile.php. The manipulation of the argument userhash leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi in code-projects Job Recruitment 1.0 /parse/_call_job_search_ajax.php
CVE-2025-0934 7.5 - High - January 31, 2025

A vulnerability was found in code-projects Job Recruitment 1.0. It has been classified as problematic. This affects an unknown part of the file /parse/_call_job_search_ajax.php. The manipulation of the argument n leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

XSS via job_type in _call_job_search_ajax.php, Job Recruitment 1.0
CVE-2025-0806 6.1 - Medium - January 29, 2025

A vulnerability was found in code-projects Job Recruitment 1.0. It has been rated as problematic. This issue affects some unknown processing of the file _call_job_search_ajax.php. The manipulation of the argument job_type leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

XSS

XSS in Job Recruitment 1.0 /_parse/_feedback_system.php
CVE-2025-0530 8.2 - High - January 17, 2025

A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability affects unknown code of the file /_parse/_feedback_system.php. The manipulation of the argument type leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

XSS

Critical SQLi in Seeker Profile Handler of Job Recruitment 1.0
CVE-2024-13093 7.5 - High - January 02, 2025

A vulnerability, which was classified as critical, has been found in code-projects Job Recruitment 1.0. This issue affects some unknown processing of the file /_parse/_call_main_search_ajax.php of the component Seeker Profile Handler. The manipulation of the argument s1 leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Critical SQLi in code-projects Job Recruitment 1.0 Job Post Handler
CVE-2024-13092 7.5 - High - January 02, 2025

A vulnerability classified as critical was found in code-projects Job Recruitment 1.0. This vulnerability affects unknown code of the file /_parse/_call_job/search_ajax.php of the component Job Post Handler. The manipulation of the argument n leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Job Recruitment 1.0 SQLi in /_parse/_feedback_system.php
CVE-2025-0168 7.5 - High - January 01, 2025

A vulnerability classified as critical has been found in code-projects Job Recruitment 1.0. This affects an unknown part of the file /_parse/_feedback_system.php. The manipulation of the argument person leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi via jobtype in code-projects job_recruitment 1.0 edit_jobpost (Critical)
CVE-2024-12968 9.8 - Critical - December 26, 2024

A vulnerability classified as critical was found in code-projects Job Recruitment 1.0. Affected by this vulnerability is the function edit_jobpost of the file /_parse/_all_edits.php. The manipulation of the argument jobtype leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

SQL Injection

SQLi in code-projects Job Recruitment 1.0 fln_update (PHP)
CVE-2024-12967 9.8 - Critical - December 26, 2024

A vulnerability classified as critical has been found in code-projects Job Recruitment 1.0. Affected is the function fln_update of the file /_parse/_all_edits.php. The manipulation of the argument fname/lname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Code-Projects Job Recruitment 1.0: Critical SQLi via cn_update
CVE-2024-12966 9.8 - Critical - December 26, 2024

A vulnerability was found in code-projects Job Recruitment 1.0. It has been rated as critical. This issue affects the function cn_update of the file /_parse/_all_edits.php. The manipulation of the argument cname/url leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Code-Projects Job Rec 1.0: add_xp SQLi via job_company
CVE-2024-12963 9.8 - Critical - December 26, 2024

A vulnerability was found in code-projects Job Recruitment 1.0 and classified as critical. Affected by this issue is the function add_xp of the file /_parse/_all_edits.php. The manipulation of the argument job_company leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

SQL Injection

SQLi via Skillset Arg in code-projects Job Recruitment 1.0 _parse/_all_edits.php
CVE-2024-12962 7.5 - High - December 26, 2024

A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /_parse/_all_edits.php. The manipulation of the argument skillset leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Job Recruitment 1.0 Remote SQLi in add_edu (degree)
CVE-2024-12939 7.5 - High - December 26, 2024

A vulnerability was found in code-projects Job Recruitment 1.0. It has been rated as critical. This issue affects the function add_edu of the file /_parse/_all_edits.php. The manipulation of the argument degree leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

SQL Injection

Job Recruitment 1.0 (SQLi via reset.php 'e' param Remote)
CVE-2024-11241 7.5 - High - November 15, 2024

A vulnerability was found in code-projects Job Recruitment 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file reset.php. The manipulation of the argument e leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi in Job Recruitment 1.0 admin.php via userid (CVE-2024-11127)
CVE-2024-11127 8.8 - High - November 12, 2024

A vulnerability was found in code-projects Job Recruitment up to 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file admin.php. The manipulation of the argument userid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Code Projects Job Recruitment or by Code Projects? Click the Watch button to subscribe.

subscribe