Description
The aapanel WP Toolkit plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization checks within the auto_login() function in versions 1.0 to 1.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to bypass all role checks and gain full admin privileges.
Problem types
Product status
1.0 (semver)
Timeline
| 2025-07-17: | Disclosed |
Credits
Kenneth Dunn
References
www.wordfence.com/...-2cb7-45bf-86ac-4a8b3a0be77a?source=cve
wordpress.org/plugins/aapanel-wp-toolkit/
plugins.trac.wordpress.org/...s-aapanel-wp-toolkit-agent.php