
career builder job search plugin Security & Risk Analysis
wordpress.org/plugins/career-builder-jobsearchSimple widget which fetch jobs from careerbuilder.com api .
Is career builder job search plugin Safe to Use in 2026?
Generally Safe
Score 85/100career builder job search plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "career-builder-jobsearch" plugin version 1.2 demonstrates a surprisingly clean static analysis profile, with no identified AJAX handlers, REST API routes, shortcodes, or cron events acting as entry points. Furthermore, the code signals show a complete absence of dangerous functions, file operations, external HTTP requests, and vulnerabilities related to SQL queries, as all are handled using prepared statements. The lack of any reported CVEs, both historically and currently, and the absence of common vulnerability types further contribute to an impression of a secure plugin. However, a significant concern arises from the static analysis of output escaping, where 100% of the 29 identified output points are not properly escaped. This indicates a high likelihood of cross-site scripting (XSS) vulnerabilities, where user-supplied data could be injected into the output rendered by the plugin without sanitization.
While the plugin's development team appears to have strong practices in preventing direct vulnerabilities like SQL injection and maintaining a minimal attack surface, the pervasive lack of output escaping is a critical oversight. This weakness, coupled with the complete absence of nonce and capability checks, leaves the plugin highly susceptible to XSS attacks that could potentially be exploited through various user-facing elements. The lack of any historical vulnerabilities could be interpreted as either a sign of exceptional security diligence or simply that the plugin has not been extensively tested or targeted in the past, making the current security posture, particularly regarding XSS, a significant risk.
Key Concerns
- 100% of output is unescaped
- 0 Nonce checks
- 0 Capability checks
career builder job search plugin Security Vulnerabilities
career builder job search plugin Release Timeline
career builder job search plugin Code Analysis
Output Escaping
career builder job search plugin Attack Surface
WordPress Hooks 1
Maintenance & Trust
career builder job search plugin Maintenance & Trust
Maintenance Signals
Community Trust
career builder job search plugin Alternatives
Simple Indeed Jobroll Widget
simple-indeed-jobroll-widget
Simple Indeed Jobroll Widget
Simple Widget Factory Plugin
simple-widget-factory
SIMPLE WIDGET FACTORY is a plugin which is been able to create custom widget areas according to the column position value given to the input field.
Classic Widgets
classic-widgets
Enables the previous "classic" widgets settings screens in Appearance - Widgets and the Customizer. Disables the block editor from managing widgets.
ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor
elementskit-lite
Join millions who empower their websites with ElementsKit Elementor Addons. Get templates, & 100+ widgets like header-footer, mega menu, custom widget
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
career builder job search plugin Developer Profile
1 plugin · 10 total installs
How We Detect career builder job search plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wp_widget_plugin_box