The WP Job Board Pro plugin for WordPress is vulnerable to privilege escalation in all versions up to 2.3.16. This is due to the plugin allowing a user to supply the 'role' field when registering. This makes it possible for unauthenticated attackers to register as an administrator on vulnerable sites. Please note that this may have been patched sooner, however, the oldest available version for us to confirm this is patched in was 1.2.85.
References
| Link | Resource |
|---|---|
| https://themeforest.net/item/superio-job-board-wordpress-theme/32180231 | Product |
| https://www.wordfence.com/threat-intel/vulnerabilities/id/7cdfce88-b6c2-4820-9d6f-446f61b9b596?source=cve | Third Party Advisory |
Configurations
History
08 Apr 2026, 18:19
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) The WP Job Board Pro plugin for WordPress is vulnerable to privilege escalation in all versions up to 2.3.16. This is due to the plugin allowing a user to supply the 'role' field when registering. This makes it possible for unauthenticated attackers to register as an administrator on vulnerable sites. Please note that this may have been patched sooner, however, the oldest available version for us to confirm this is patched in was 1.2.85. |
20 Feb 2025, 16:08
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:apusthemes:superio:*:*:*:*:*:wordpress:*:* | |
| Summary |
|
|
| References | () https://themeforest.net/item/superio-job-board-wordpress-theme/32180231 - Product | |
| References | () https://www.wordfence.com/threat-intel/vulnerabilities/id/7cdfce88-b6c2-4820-9d6f-446f61b9b596?source=cve - Third Party Advisory | |
| First Time |
Apusthemes superio
Apusthemes |
12 Feb 2025, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-02-12 10:15
Updated : 2026-04-08 18:19
NVD link : CVE-2024-12213
Mitre link : CVE-2024-12213
CVE.ORG link : CVE-2024-12213
JSON object : View
Products Affected
apusthemes
- superio
CWE
CWE-266
Incorrect Privilege Assignment
