Vulnerability index

Browse CVEs

1,269 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness PHP File Inclusion (RFI/LFI)CWE-98 × clear
Unclassified HIGH 8.1
CVE-2026-73400

Unauthenticated Local File Inclusion in Restaurant Menu by MotoPress <= 2.4.11 versions.

Fix unknown
Fix from $4,900 2026-08-18
Unclassified HIGH 8.1
CVE-2026-32464

Unauthenticated Local File Inclusion in Theme Test Drive <= 2.9.1 versions.

Fix unknown
Fix from $4,900 2026-08-18
Unclassified HIGH 8.1
CVE-2026-28570

Unauthenticated Local File Inclusion in Vavo Core <= 2.3.0 versions.

Fix unknown
Fix from $4,900 2026-08-18
Unclassified HIGH 8.1
CVE-2026-66656

Unauthenticated Local File Inclusion in Foton Core <= 1.1.1 versions.

No fix yet
Fix from $4,900 2026-08-13
Unclassified HIGH 8.1
CVE-2026-66657

Unauthenticated Local File Inclusion in Biagiotti Core <= 2.1.1 versions.

No fix yet
Fix from $4,900 2026-08-13
Unclassified HIGH 8.1
CVE-2026-66653

Unauthenticated Local File Inclusion in Barista <= 2.5.1 versions.

No fix yet
Fix from $4,900 2026-08-13
Unclassified HIGH 8.1
CVE-2026-66450

Unauthenticated Local File Inclusion in Geo Mashup <= 1.13.18 versions.

No fix yet
Fix from $4,900 2026-08-13
Unclassified HIGH 8.1
CVE-2026-66710

Unauthenticated Local File Inclusion in e2pdf <= 1.32.40 versions.

No fix yet
Fix from $1,950 2026-08-06
Unclassified MEDIUM 6.6
CVE-2026-17605

The Payment forms, Buy now buttons, and Invoicing System | GetPaid plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, …

No fix yet
Fix from $1,600 2026-08-01
Unclassified MEDIUM 5.1
CVE-2026-63302

Quick.CMS is vulnerable to Local File Inclusion (LFI) in the admin.php endpoint via the p parameter. An authenticated attacker with admin privileges …

No fix yet
Fix from $1,600 2026-07-28
Unclassified HIGH 7.5
CVE-2026-65481

Contributor Local File Inclusion in Vino <= 1.9 versions.

No fix yet
Fix from $1,950 2026-07-23
Unclassified HIGH 7.5
CVE-2026-65477

Contributor Local File Inclusion in Tonda Core <= 2.1.2 versions.

No fix yet
Fix from $1,950 2026-07-23
Unclassified HIGH 8.8
CVE-2026-44177

Kirby is an open-source content management system. In versions 5.3.0 and above but prior to 5.4.1, Kirby did not correctly validate the provided user…

No fix yet
Fix from $1,950 2026-07-16
Unclassified HIGH 7.7
CVE-2026-46687

Emlog is an open source website building system. In 2.6.13 and earlier, the article publishing interface stores a path-traversal template parameter f…

No fix yet
Fix from $1,950 2026-07-16
Unclassified HIGH 7.5
CVE-2026-57799

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Nuss nuss allows PHP L…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57800

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Overworld overwo…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57801

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes SetSail setsai…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57802

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur allow…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57803

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur Core …

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57804

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CodexThemes TheGem Theme Ele…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57805

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Tonda tonda al…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57790

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Billey billey allo…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57791

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Brook brook allows…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57792

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Dør dor allows…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57793

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Elated-Themes Flow flow allo…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57794

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Golo Framework golo-fr…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57795

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in themelexus Kitchor kitchor a…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57796

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in VLThemes Leedo leedo allows …

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57798

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SaurabhSharma NewsPlus Short…

Mitigation only
Fix from $1,950 2026-07-13
Unclassified HIGH 7.5
CVE-2026-57788

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Aalto aalto allo…

Mitigation only
Fix from $1,950 2026-07-13