WordPress Product Security Update Advisory (CVE-2025-4322)
Overview
We have released a security update to fix vulnerabilities in our WordPress products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-4322
WordPress Motors theme version: 5.6.67 and earlier
Resolved Vulnerabilities
Privilege escalation vulnerability in the WordPress Motors theme (CVE-2025-4322)
Vulnerability Patches
Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-4322
WordPress Motors theme version: 5.6.68
References
[1] Motors <= 5.6.67 – Unauthenticated Privilege Escalation via Password Update/Account Takeover
https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-themes/motors/motors-5667-unauthenticated-privilege-escalation-via-password-updateaccount-takeover