WordPress · Wp Job Portal · CVE-2026-81299
**Name of the Vulnerable Software and Affected Versions**
WP Job Portal versions prior to 2.6.0
**Description**
An Insecure Direct Object References (IDOR) issue exists for users with subscriber privileges. IDOR is a type of access control vulnerability that occurs when an application provides direct access to objects based on user-supplied input, allowing an attacker to bypass authorization and access unauthorized data.
**Recommendations**
Update WP Job Portal to a version newer than 2.5.9.