Vulnerability that allows full admin takeover found in premium WordPress theme




  • ‘Motors’ allowed threat actors to take over admin accounts
  • This enabled full website takeover
  • The developers released a fix

Motors, a premium theme for WordPress, was carrying a critical-severity vulnerability that allowed malicious actors to fully take over compromised websites.

The privilege escalation flaw, due to the theme improperly validating user identities before updating passwords, is now tracked as CVE-2025-4322, and has a severity score of 9.8/10 (critical).

https://cdn.mos.cms.futurecdn.net/7NLZKWEKmFLJVAH4nubeaX.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img