{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/nokri--job-board-wordpress-theme--1.6.4/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:nokri:job_board_wordpress_theme:*:*:*:*:*:wordpress:*:*"],"_cs_cves":[{"cvss":8.8,"id":"CVE-2025-9049"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Nokri – Job Board WordPress Theme (\u003c= 1.6.4)"],"_cs_severities":["high"],"_cs_tags":["wordpress","privilege-escalation","web-application-vulnerability"],"_cs_type":"advisory","_cs_vendors":["WordPress"],"content_html":"\u003cp\u003eThe Nokri - Job Board WordPress Theme for WordPress, in all versions up to and including 1.6.4, contains a critical security vulnerability involving a missing capability check within the 'nokri_account_member_permissions' function. This flaw allows an authenticated attacker, specifically those with Subscriber-level privileges, to interact with the function to add new users as employer account members. By abusing this capability, an attacker can modify the email addresses of existing users, including those with Administrator privileges. This email modification allows the attacker to trigger password reset procedures, effectively facilitating full account takeover of administrative accounts. The vulnerability stems from improper input validation and insufficient authorization controls within the theme's member management features, posing a significant risk to the integrity and security of the WordPress instance.\u003c/p\u003e\n\u003ch2 id=\"attack-chain\"\u003eAttack Chain\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eAttacker authenticates to the target WordPress site with low-privilege Subscriber credentials.\u003c/li\u003e\n\u003cli\u003eAttacker crafts an HTTP POST request targeting the vulnerable 'nokri_account_member_permissions' function.\u003c/li\u003e\n\u003cli\u003eThe vulnerable theme code fails to verify if the requesting user possesses administrative or sufficient employer-level permissions.\u003c/li\u003e\n\u003cli\u003eAttacker injects parameters to add a new Subscriber user with employer-level account member privileges.\u003c/li\u003e\n\u003cli\u003eAttacker logs into or uses the elevated employer member account to access user profile modification features.\u003c/li\u003e\n\u003cli\u003eAttacker updates the email address of a target Administrator account to an attacker-controlled email address.\u003c/li\u003e\n\u003cli\u003eAttacker initiates a standard 'Forgot Password' request for the hijacked Administrator account.\u003c/li\u003e\n\u003cli\u003eAttacker receives the password reset token at the attacker-controlled email address to complete the account takeover.\u003c/li\u003e\n\u003c/ol\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability leads to full administrative account takeover. Attackers can gain control over the entire WordPress site, potentially resulting in data exfiltration, unauthorized content modification, installation of malicious plugins, or complete site defacement. The scope is limited to WordPress installations utilizing the Nokri - Job Board WordPress Theme versions 1.6.4 and below.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the immediate update of the Nokri - Job Board WordPress Theme to the latest available version provided by the vendor. In environments where immediate patching is not possible, implement strict access controls on registration and user modification endpoints. Enable detailed server-side request logging to monitor for unauthorized calls to the 'nokri_account_member_permissions' function.\u003c/p\u003e\n","date_modified":"2026-09-05T13:32:04Z","date_published":"2026-09-05T13:32:04Z","id":"https://feed.craftedsignal.io/briefs/2026-09-nokri-theme-privilege-escalation/","summary":"The Nokri Job Board WordPress theme (\u003c= 1.6.4) is vulnerable to privilege escalation via a missing capability check in the 'nokri_account_member_permissions' function, allowing authenticated subscribers to escalate access.","title":"Privilege Escalation Vulnerability in Nokri Job Board WordPress Theme","url":"https://feed.craftedsignal.io/briefs/2026-09-nokri-theme-privilege-escalation/"}],"language":"en","title":"CraftedSignal Threat Feed - Nokri – Job Board WordPress Theme (\u003c= 1.6.4)","version":"https://jsonfeed.org/version/1.1"}