cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2018-19488,https://securityvulnerability.io/vulnerability/CVE-2018-19488,,"The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_reset_pass() function through the admin-ajax.php file, which allows remote unauthenticated attackers to reset the password of a user's account.",Wordpress,WP-jobhunt,9.8,CRITICAL,0.03280000016093254,false,,false,false,false,,false,false,2019-03-21T16:00:00.000Z,0 CVE-2018-19487,https://securityvulnerability.io/vulnerability/CVE-2018-19487,,"The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_employer_ajax_profile() function through the admin-ajax.php file, which allows remote unauthenticated attackers to enumerate information about users.",Wordpress,WP-jobhunt,7.5,HIGH,0.018330000340938568,false,,false,false,true,true,false,false,2019-03-21T16:00:00.000Z,0