CVE-2025-26935
HIGHWpjobportal WP Job Portal < 2.2.8 - Path Traversal
Title source: ruleDescription
Path Traversal: '.../...//' vulnerability in wpjobportal WP Job Portal wp-job-portal allows PHP Local File Inclusion.This issue affects WP Job Portal: from n/a through <= 2.2.8.
Exploits (1)
github
WORKING POC
3 stars
by certuscyber · pythonpoc
https://github.com/certuscyber/cve-pocs/tree/main/CVE-2025-26935
References (2)
Scores
CVSS v3
7.5
EPSS
0.0020
EPSS Percentile
41.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-22
CWE-35
Status
published
Products (2)
wpjobportal/WP Job Portal
< 2.2.8
wpjobportal/wp_job_portal
< 2.2.8
Published
Feb 25, 2025
Tracked Since
Feb 18, 2026