Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 10 Jul 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Themehunk
Themehunk th Login Registration Wordpress Wordpress wordpress |
|
| Vendors & Products |
Themehunk
Themehunk th Login Registration Wordpress Wordpress wordpress |
Wed, 08 Jul 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 08 Jul 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Themehunk Login Registration plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.0.2. This is due to the handle_frontend_register() function in the unauthenticated /thlogin/v1/register REST endpoint accepting a user-controlled 'role' parameter and validating it only against get_editable_roles() — which returns every defined editable site role, including 'editor' — before passing it to wp_insert_user(). This makes it possible for unauthenticated attackers, when public user registration is enabled, to create new accounts with the editor role. | |
| Title | Themehunk Login Registration <= 1.0.2 - Unauthenticated Privilege Escalation via 'role' Parameter | |
| Weaknesses | CWE-269 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-07-08T12:38:09.291Z
Reserved: 2026-06-30T14:19:53.767Z
Link: CVE-2026-14250
Updated: 2026-07-08T12:38:03.885Z
Status : Deferred
Published: 2026-07-08T12:17:20.200
Modified: 2026-07-08T14:55:07.843
Link: CVE-2026-14250
No data.
OpenCVE Enrichment
Updated: 2026-08-01T16:45:03Z