22,000 WordPress Sites Affected by Privilege Escalation Vulnerability in Motors WordPress Theme
TLDR: Wordfence reports a critical privilege escalation vulnerability in the Motors WordPress theme (versions ≤ 5.6.67) allowing unauthenticated attackers to reset passwords. Detected by researcher Foxyyy, the issue has been patched in version 5.6.68. Users are urged to update their sites. Wordfence provided firewall rules for protection, with free users receiving it on June 5, 2025.