WordPress Product Security Update Advisory (CVE-2025-4322)

WordPress Product Security Update Advisory (CVE-2025-4322)

Overview

 

We have released a security update to fix vulnerabilities in our WordPress products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-4322

 

WordPress Motors theme version: 5.6.67 and earlier

 

 

Resolved Vulnerabilities

 

Privilege escalation vulnerability in the WordPress Motors theme (CVE-2025-4322)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

 

CVE-2025-4322

 

WordPress Motors theme version: 5.6.68

 

 

References

 

[1] Motors <= 5.6.67 – Unauthenticated Privilege Escalation via Password Update/Account Takeover
https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-themes/motors/motors-5667-unauthenticated-privilege-escalation-via-password-updateaccount-takeover