Basic Job Site Script Project maintains a web-based job-listing platform whose vulnerability profile centers on common application-layer input-handling weaknesses including SQL injection, cross-site scripting, and cross-site request forgery. These are characteristic flaws in script-based content-management systems where user input flows across database queries and page rendering without rigorous sanitization. Current CVE counts, severity, and exploitation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Basic Job Site Script Project over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-17642CRITICAL Basic Job Site Script 2.0.5 has SQL Injection via the keyword parameter to /job. | Dec 13, 2017 | 9.8 | 43 | NO | YES |
CVE-2017-17895CRITICAL Readymade Job Site Script has SQL Injection via the location_name array parameter to the /job URI. | Dec 27, 2017 | 9.8 | 29 | NO | NO |
CVE-2017-17894HIGH Readymade Job Site Script has CSRF via the /job URI. | Dec 27, 2017 | 8.8 | 26 | NO | NO |
CVE-2017-17896MEDIUM Readymade Job Site Script has XSS via the keyword parameter to the /job URI. | Dec 27, 2017 | 6.1 | 20 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Basic Job Site Script Project.
Media articles that mention a CVE ID that affects a product developed by Basic Job Site Script Project — matched by CVE ID, not by vendor name.