CVE-2025-14123: CWE-269 Improper Privilege Management in davidanderson Redux Framework
Description
The Redux Framework WordPress plugin up to version 4.5.11 has a privilege escalation vulnerability. Authenticated users with Subscriber-level access or higher can exploit insufficient capability checks to assign arbitrary roles, including Administrator, during profile updates if a plugin or theme uses Redux_Users profile fields. This vulnerability arises from saving arbitrary meta keys under a registered option without proper restrictions.
CVSS v3.1
Score 6.8medium
Affected software
davidanderson
Redux Framework
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2025-14123 describes an improper privilege management vulnerability (CWE-269) in the Redux Framework WordPress plugin. Versions up to and including 4.5.11 allow authenticated users with Subscriber-level privileges or above to escalate their privileges by setting arbitrary user roles during profile updates. This occurs because the plugin saves arbitrary meta keys under a registered option name without enforcing capability checks or key allowlisting. Exploitation requires that a plugin or theme using this framework has added at least one user profile field leveraging Redux_Users::set_profile, set_section, or set_field methods.
Potential Impact
Successful exploitation allows an authenticated low-privilege user to escalate their privileges to Administrator, leading to full control over the WordPress site. This compromises confidentiality and integrity of the site content and configuration. Availability impact is not indicated. No known exploits in the wild have been reported.
Mitigation Recommendations
No official patch or fix is currently documented. Users should monitor the vendor advisory for updates. Until a fix is available, restrict access to trusted users only and avoid installing plugins or themes that add user profile fields using Redux_Users methods. Applying the principle of least privilege and disabling unnecessary user profile modifications can reduce risk.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- Wordfence
- Date Reserved
- 2025-12-05T16:32:56.932Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6ac89fed2cdf04f6563b89d5
Added to database: 10/09/2026, 08:03:57 UTC
Last enriched: 10/09/2026, 08:18:20 UTC
Last updated: 10/09/2026, 18:57:32 UTC
Views: 18
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.