Apusthemes

Superio

3 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Published 12.02.2025 10:15:10
  • Last modified 20.02.2025 16:09:14

The Apus Framework plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'import_page_options' function in all versions up to, and including, 2.3. This m...

  • EPSS 0.15%
  • Published 12.02.2025 10:15:08
  • Last modified 20.02.2025 16:08:26

The WP Job Board Pro plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.2.76. This is due to the plugin allowing a user to supply the 'role' field when registering. This makes it possible for unauthenti...

Exploit
  • EPSS 0.14%
  • Published 02.01.2023 22:15:16
  • Last modified 10.04.2025 19:15:50

The Superio WordPress theme does not sanitise and escape some parameters, which could allow users with a role as low as a subscriber to perform Cross-Site Scripting attacks.