The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'download_image_via_ai' and 'generate_image_via_ai' functions in all versions up to, and including, 4.2.7. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application to upload files in an image format, and to generate AI images using the site's OpenAI key.
History

Wed, 12 Feb 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 07 Feb 2025 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Astoundify
Astoundify jobify
CPEs cpe:2.3:a:astoundify:jobify:*:*:*:*:*:wordpress:*:*
Vendors & Products Astoundify
Astoundify jobify

Fri, 24 Jan 2025 15:30:00 +0000

Type Values Removed Values Added
Description The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'download_image_via_ai' and 'generate_image_via_ai' functions in all versions up to, and including, 4.2.7. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application to upload files in an image format, and to generate AI images using the site's OpenAI key.
Title Jobify - Job Board WordPress Theme <= 4.2.7 - Missing Authorization to Unauthenticated Server-Side Request Forgery, Arbitrary Image Upload, and Image Generation
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published: 2025-01-24T15:21:43.913Z

Updated: 2025-02-12T20:01:20.154Z

Reserved: 2025-01-24T03:03:29.872Z

Link: CVE-2024-13698

cve-icon Vulnrichment

Updated: 2025-02-12T19:56:09.590Z

cve-icon NVD

Status : Analyzed

Published: 2025-01-24T16:15:34.597

Modified: 2025-02-07T20:15:27.277

Link: CVE-2024-13698

cve-icon Redhat

No data.