CVE-2025-59558: WordPress Billey Theme < 2.1.6 - Local File Inclusion Vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Billey billey allows PHP Local File Inclusion.This issue affects Billey: from n/a through < 2.1.6.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59558?
CVE-2025-59558 is classified as a high severity vulnerability due to its potential for remote file inclusion.
How do I fix CVE-2025-59558?
To fix CVE-2025-59558, upgrade your ThemeMove Billey installation to version 2.1.6 or later immediately.
What versions are affected by CVE-2025-59558?
CVE-2025-59558 affects ThemeMove Billey and WordPress Billey Theme versions up to, but not including, 2.1.6.
What is the impact of CVE-2025-59558?
The impact of CVE-2025-59558 includes the possibility of attackers executing arbitrary local files, leading to potential unauthorized access to sensitive information.
Is CVE-2025-59558 a widespread vulnerability?
CVE-2025-59558 primarily affects users of ThemeMove Billey and may impact any deployed WordPress sites utilizing this theme.