CVE-2025-59558 | ThemeMove Billey Plugin up to 2.1.6 on WordPress filename control

SecurityVulns

A vulnerability, which was classified as critical, has been found in ThemeMove Billey Plugin up to 2.1.6 on WordPress. The impacted element is an unknown function. The manipulation leads to improper control of filename for include/require statement in php program (‘php remote file inclusion’).

This vulnerability is referenced as CVE-2025-59558. Remote exploitation of the attack is possible. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More