Deserialization of Untrusted Data Vulnerability Affects JobSearch
CVE-2024-43931
9.8CRITICAL
What is CVE-2024-43931?
The JobSearch application by eyecix is susceptible to a Deserialization of Untrusted Data vulnerability, specifically allowing object injection. This flaw can enable an attacker to manipulate serialized objects, leading to potential execution of arbitrary PHP code, data exposure, or other malicious activities. Users of JobSearch, particularly versions from n/a through 2.5.3, should prioritize applying security patches and implementing best practices to mitigate risks associated with untrusted data handling.
Affected Version(s)
JobSearch <= 2.5.3