CVE-2025-49867: WordPress RealHomes theme <= 4.4.0 - Privilege Escalation vulnerability
Published Jul 4, 2025
·Updated
Incorrect Privilege Assignment vulnerability in InspiryThemes RealHomes realhomes allows Privilege Escalation.This issue affects RealHomes: from n/a through <= 4.4.0.
Affected Software
3 affected components
InspiryThemes RealHomes<=4.4.0
WordPress RealHomes<=4.4.0
InspiryThemes Realhomes Wordpress<4.4.1
Remediation
Information
Update the WordPress RealHomes theme to the latest available version (at least 4.4.1).
Event History
Jul 4, 2025
CVE Published
via MITRE·11:17 AM
Data Sourced
via MITRE·11:17 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-49867?
CVE-2025-49867 is classified as a high severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2025-49867?
To mitigate CVE-2025-49867, users should update InspiryThemes RealHomes to the latest version beyond 4.4.0.
3
What does CVE-2025-49867 affect?
CVE-2025-49867 affects all versions of InspiryThemes RealHomes up to and including 4.4.0.
4
Who is impacted by CVE-2025-49867?
Any website using RealHomes from InspiryThemes on WordPress up to version 4.4.0 is impacted by CVE-2025-49867.
5
What type of vulnerability is CVE-2025-49867?
CVE-2025-49867 is an Incorrect Privilege Assignment vulnerability that allows for privilege escalation.