WordPress security by component
aapanel WP Toolkit
Plugin description
aapanel WP Toolkit is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 18, 2025; the highest published CVSS base score is 8.8.
Plugin slug:
aapanel-wp-toolkitLatest vulnerability
CVE-2025-6813: aapanel WP Toolkit: Privilege escalation or authentication bypass
aapanel WP Toolkit is affected by privilege escalation or authentication bypass. Exploitation requires an authenticated subscriber account. A successful request can grant permissions or access that the caller should not possess. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
| Safe version |
|
||
|---|---|---|---|
| Jul 18, 2025 |
CVE-2025-6813
aapanel WP Toolkit: Privilege escalation or authentication bypass
aapanel WP Toolkit is affected by privilege escalation or authentication bypass. Exploitation requires an authenticated subscriber account. A successful request can grant permissions or access that the caller should not possess. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
|
See mitigation notes |
CVE8.8
NVDPending
|