** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

Project Subscriptions

Vendors Products
Mvpthemes Subscribe
Wordpress Subscribe
Wordpress Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References

No reference.

History

Tue, 01 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Title Jawn <= 1.4.2 - Unauthenticated Privilege Escalation
Weaknesses CWE-266
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 01 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Description The Jawn theme for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.4.2. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator. ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

Tue, 25 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 25 Aug 2026 06:45:00 +0000

Type Values Removed Values Added
First Time appeared Mvpthemes
Mvpthemes jawn
Wordpress
Wordpress wordpress
Vendors & Products Mvpthemes
Mvpthemes jawn
Wordpress
Wordpress wordpress

Tue, 25 Aug 2026 05:45:00 +0000

Type Values Removed Values Added
Description The Jawn theme for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.4.2. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.
Title Jawn <= 1.4.2 - Unauthenticated Privilege Escalation
Weaknesses CWE-266
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: REJECTED

Assigner: Wordfence

Published:

Updated: 2026-09-01T13:19:48.296Z

Reserved: 2026-08-24T16:53:08.840Z

Link: CVE-2026-78477

cve-icon Vulnrichment

Updated:

cve-icon NVD

Status : Rejected

Published: 2026-08-25T06:19:01.147

Modified: 2026-09-01T14:17:41.333

Link: CVE-2026-78477

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-25T06:45:03Z

Weaknesses

No weakness.