SecAlerts
m

motors

Security Risk Profile

31
/100
low

Security Risk Score

Comprehensive risk assessment based on 9 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from January 16, 2025 to present

9
Total CVEs
4
Critical+High
0
Exploited
3
Unpatched

Threat Assessment

Avg CVSS
6.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
3
Critical/High
Risk Level
31/100
low
📈 1 in Last 30 Days

Severity Distribution

Critical
1
High
3
Medium
5
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
1

Age Distribution

Common Weaknesses (CWE)

1
Code Injection
2
2
XSS
1

Most Affected Products

1. StylemixThemes Motors - Car Dealer\, Classifieds \& Listing Wordpress5
2. Motors Car Dealership & Classified Listings Plugin4
3. Motors Car Dealer, Classifieds & Listing2
4. Motors WordPress plugin1
5. Motors Motors theme for WordPress1

Recent Vulnerabilities

See more →
CVE-2026-91016
CVSS 5.3medium

Motors < 1.4.121 - Unauthenticated Draft/Private Listing Disclosure

Sep 17, 2026🔧 No Patch
CVE-2025-10494
CVSS 8.1high

Motors – Car Dealership & Classified Listings Plugin <= 1.4.89 - Authenticated (Subscriber+) Arbitrary File Deletion

Oct 8, 2025🔧 No Patch
CVE-2025-4322
CVSS 9.8critical

Motors <= 5.6.67 - Unauthenticated Privilege Escalation via Password Update/Account Takeover

May 20, 2025🔧 No Patch
CVE-2024-13738
CVSS 7.3high

Motors - Car Dealer, Rental & Listing WordPress theme <= 5.6.65 - Unauthenticated Arbitrary Shortcode Execution

May 3, 2025🔧 No Patch
CVE-2025-2808
CVSS 5.4medium

Motors – Car Dealership & Classified Listings Plugin <= 1.4.63 - Authenticated (Subscriber+) Stored Cross-Site Scripting

Apr 8, 2025
CVE-2025-3437
CVSS 4.3EPSS 0%medium

Motors – Car Dealership & Classified Listings Plugin <= 1.4.66 - Missing Authorization to Authenticated (Subscriber+) Wizard Set-up

Apr 8, 2025
CVE-2025-2807
CVSS 8.8high

Motors – Car Dealership & Classified Listings Plugin <= 1.4.64 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation

Apr 8, 2025
CVE-2024-13737
CVSS 4.3medium

Motors – Car Dealer, Classifieds & Listing <= 1.4.57 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Deletion and Listing Template Creation

Mar 22, 2025
CVE-2024-10970
CVSS 5.4medium

Motors – Car Dealer, Classifieds & Listing <= 1.4.43 - Authenticated (Subscriber+) Arbitrary Shortcode Execution via Custom Title

Jan 16, 2025🔧 No Patch

Monitor motors in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

motors Security Vulnerabilities & Risk Score | 9 CVEs | SecAlerts - SecAlerts