Path Traversal Vulnerability in JobCareer Theme by EMV
CVE-2025-69128

8.6HIGH

Key Information:

Vendor

WordPress

Status
Vendor
CVE Published:
17 June 2026

What is CVE-2025-69128?

A vulnerability in the EMV JobCareer theme allows attackers to exploit improper limitations on pathnames, leading to potential unauthorized access to files outside the intended directory. This vulnerability could enable attackers to traverse the file system and access sensitive information, compromising the security of the affected website and its data. Users are advised to update to the latest version and review their security practices to mitigate any risks associated with this weakness.

Affected Version(s)

JobCareer <= 7.3

References

CVSS V3.1

Score:
8.6
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Denver Jackson | Patchstack Bug Bounty Program
.