Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-9049— Nokri – Job Board WordPress Theme <= 1.6.4 - Missing Authorization to Authenticated (Subscriber +) Privilege Escalation via Account Takeover

Quick assessment

Affected
scriptsbundle Nokri – Job Board WordPress Theme
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Nokri – Job Board WordPress 主题(适用于 WordPress)存在由于在 函数中缺少权限检查(capability check)而导致的数据未授权修改漏洞,影响版本为 1.6.4 及之前的所有版本。该漏洞使得拥有订阅者(Subscriber)及以上权限的已认证攻击者能够添加具有“雇主账户成员”权限的新订阅者用户;这些新用户随后可以通过修改任意用户(包括管理员用户)的邮箱地址来进一步提升自身权限。

CVSS 8.8 · High

Affected Version Matrix 1

VendorProduct Version RangeStatus
scriptsbundle Nokri – Job Board WordPress Theme ≤ 1.6.4 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-9049

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Nokri – Job Board WordPress Theme <= 1.6.4 - Missing Authorization to Authenticated (Subscriber +) Privilege Escalation via Account Takeover
Source: CVE Program / CVE List V5
Vulnerability Description
The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'nokri_account_member_permissions' function in all versions up to, and including, 1.6.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to add new Subscriber users with employer account member permissions, who in turn can escalate privileges by updating the email address of any user, including Administrator users.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
授权机制缺失
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
scriptsbundle Nokri – Job Board WordPress Theme 0 ~ 1.6.4 -

II. Public POCs for CVE-2025-9049

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-9049

登录查看更多情报信息。

Vendor Advisories for CVE-2025-9049 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2025-9049

No comments yet


Leave a comment