Tamago-DB Job board Security & Risk Analysis

wordpress.org/plugins/jobsearch

Tamago-DB Job Board integrates directly into the Tamago-DB ATS platform.

10 active installs v2.4.0 PHP 7.3+ WP 4.9+ Updated Oct 9, 2025
atsjobjob-boardrecruitingrecruitment
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Tamago-DB Job board Safe to Use in 2026?

Generally Safe

Score 100/100

Tamago-DB Job board has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "jobsearch" plugin v2.4.0 demonstrates a generally good security posture with a clean vulnerability history and the absence of critical taint flows. The static analysis shows a strong adherence to secure coding practices, particularly with a high percentage of SQL queries utilizing prepared statements and the presence of nonce and capability checks. This suggests a development team that is aware of common WordPress security pitfalls and has implemented reasonable safeguards.

However, there are areas that warrant attention. The output escaping is a significant concern, with only 33% of outputs being properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not sufficiently sanitized before being displayed. Additionally, while the overall attack surface of entry points is moderate, the lack of specific auth checks on any identified AJAX handlers or REST API routes (though none were explicitly identified as unprotected) implies a potential for future vulnerabilities if new endpoints are added without proper authorization mechanisms. The file operations and external HTTP requests, while not inherently problematic, are always areas to monitor closely for potential exploits.

Given the lack of past CVEs and the absence of critical static analysis findings, the plugin appears to be built with security in mind. The primary concern revolves around output escaping, which is a common vector for client-side attacks. Addressing this proactively would significantly strengthen the plugin's security profile.

Key Concerns

  • Low output escaping rate
  • No explicit auth checks on AJAX/REST
Vulnerabilities
None known

Tamago-DB Job board Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Tamago-DB Job board Code Analysis

Dangerous Functions
0
Raw SQL Queries
4
48 prepared
Unescaped Output
35
17 escaped
Nonce Checks
3
Capability Checks
7
File Operations
7
External Requests
5
Bundled Libraries
0

SQL Query Safety

92% prepared52 total queries

Output Escaping

33% escaped52 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<helper> (helper\helper.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Tamago-DB Job board Attack Surface

Entry Points10
Unprotected0

Shortcodes 10

[jobsearch_form] jobsearch.php:327
[jobsearch_search_form] jobsearch.php:329
[jobsearch_list_form] jobsearch.php:332
[jobsearch_detail] jobsearch.php:334
[jobsearch_tag] jobsearch.php:335
[jobsearch_featured] jobsearch.php:337
[jobsearch_category] jobsearch.php:339
[jobsearch_last_job] jobsearch.php:341
[jobsearch_apply] jobsearch.php:343
[jobsearch_apply_btn] jobsearch.php:345
WordPress Hooks 13
actiontemplate_redirectjobsearch.php:317
actionwp_headjobsearch.php:321
actionwidgets_initjobsearch.php:322
filterhttp_request_reject_unsafe_urlsjobsearch.php:324
actionadmin_menujobsearch.php:349
actionadmin_enqueue_scriptsjobsearch.php:350
actionwp_enqueue_scriptsjobsearch.php:449
actionwp_default_scriptsjobsearch.php:451
actioninitjobsearch.php:457
actioncore_upgrade_preamblejobsearch.php:458
filterquery_varsjobsearch.php:460
filterget_canonical_urljobsearch.php:461
filterauto_update_pluginjobsearch.php:606
Maintenance & Trust

Tamago-DB Job board Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedOct 9, 2025
PHP min version7.3
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Tamago-DB Job board Developer Profile

Tamago-DB

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Tamago-DB Job board

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jobsearch/css/admin/style.css/wp-content/plugins/jobsearch/css/admin/form.css/wp-content/plugins/jobsearch/css/admin/responsive.css/wp-content/plugins/jobsearch/css/admin/style.css/wp-content/plugins/jobsearch/css/frontend/style.css/wp-content/plugins/jobsearch/css/frontend/jobList.css/wp-content/plugins/jobsearch/css/frontend/jobDetail.css/wp-content/plugins/jobsearch/css/frontend/apply.css+7 more
Version Parameters
jobsearch/css/admin/style.css?ver=jobsearch/css/frontend/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
jobsearch_main_Wrapperjobsearch-job-listjobsearch-job-detailjobsearch-apply-formtdb_job_search_formjobsearch-candidate-profilejobsearch-company-profilejobsearch-dashboard+2 more
Data Attributes
data-job-iddata-company-iddata-applicant-iddata-employer-iddata-candidate-id
JS Globals
JobsearchFrontendJobsearchAdminjobsearch_obj
REST Endpoints
/wp-json/jobsearch/v1/jobs/wp-json/jobsearch/v1/companies/wp-json/jobsearch/v1/candidates/wp-json/jobsearch/v1/employers
Shortcode Output
[jobsearch_jobs][jobsearch_job_detail][jobsearch_search_form][jobsearch_candidate_profile]
FAQ

Frequently Asked Questions about Tamago-DB Job board