
Simple but Powerful HTML and PDF Job Board Security & Risk Analysis
wordpress.org/plugins/simple-but-powerful-html-and-pdf-job-boardSPJB allows users to quickly create job offers as HTML page and PDF file using the WordPress WYSIWYG editor. Templates are supported to significantly …
Is Simple but Powerful HTML and PDF Job Board Safe to Use in 2026?
Generally Safe
Score 85/100Simple but Powerful HTML and PDF Job Board has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "simple-but-powerful-html-and-pdf-job-board" v0.9 exhibits a mixed security posture. While it has no recorded vulnerabilities and generally good output escaping (84%), several critical security concerns arise from the static analysis. The presence of an unprotected AJAX handler significantly expands the attack surface without proper authorization checks, posing a risk of unauthorized actions. Furthermore, all SQL queries lack prepared statements, which is a major vulnerability for SQL injection. The taint analysis reveals a flow with unsanitized paths and high severity, directly indicating a potential for malicious input to be executed or processed in an unsafe manner. The absence of nonce checks on the unprotected AJAX handler exacerbates this risk, making it easier for attackers to forge requests.
The vulnerability history is a positive indicator, suggesting the developers may have addressed past issues or that the plugin hasn't been extensively targeted. However, this cannot compensate for the immediate risks identified in the code analysis. The bundled TCPDF library, while not explicitly flagged as vulnerable in the provided data, is an outdated component and could be a vector if it contains known or zero-day exploits. The combination of an unprotected entry point, raw SQL queries, and a high-severity taint flow creates a concerning security profile that requires immediate attention.
Key Concerns
- Unprotected AJAX handler
- All SQL queries without prepared statements
- High severity taint flow
- Missing nonce checks on AJAX
- Bundled outdated TCPDF library v1.0.004
Simple but Powerful HTML and PDF Job Board Security Vulnerabilities
Simple but Powerful HTML and PDF Job Board Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Simple but Powerful HTML and PDF Job Board Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Simple but Powerful HTML and PDF Job Board Maintenance & Trust
Maintenance Signals
Community Trust
Simple but Powerful HTML and PDF Job Board Alternatives
WP Job Manager
wp-job-manager
Create a careers page for your company website, or build a public job board for your community.
WP Job Openings – Job Listing, Career Page and Recruitment Plugin
wp-job-openings
WP Job Openings plugin is the most simple yet powerful plugin for setting up a job listing page for your WordPress website.
Simple Job Board
simple-job-board
job board plugin for job listings, managing applicants, applications, categories, job types, taxonomies, career page, job openings, and recruiters
WP Job Portal – AI-Powered Recruitment System for Company or Job Board website
wp-job-portal
A smart, AI-powered job board plugin for WordPress. Build modern recruitment platforms with job listings, resume search, and intelligent matching.
Auto Delete Applications – Add-on for WP Job Openings
auto-delete-applications-add-on-for-wp-job-openings
This is an add-on for WP Job Openings Plugin, which will let you delete the received applications periodically. The plugin will let you specify a time …
Simple but Powerful HTML and PDF Job Board Developer Profile
2 plugins · 20 total installs
How We Detect Simple but Powerful HTML and PDF Job Board
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/simple-but-powerful-html-and-pdf-job-board/includes/spjb_admin.cssHTML / DOM Fingerprints
spjb_adminspjb_info<table><tr><th>ID</th><th>Type</th>