Vulnerability index

Browse CVEs

1,270 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness PHP File Inclusion (RFI/LFI)CWE-98 × clear
Unclassified HIGH 8.1
CVE-2025-49363

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Kings & Queens …

Mitigation only
Fix from $1,950 2025-12-18
Unclassified HIGH 8.1
CVE-2025-49364

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Ludos Paradise …

Mitigation only
Fix from $1,950 2025-12-18
Unclassified HIGH 8.1
CVE-2025-49365

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Jack Well jack-…

Mitigation only
Fix from $1,950 2025-12-18
Unclassified HIGH 8.1
CVE-2025-49366

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Hanani hanani a…

Mitigation only
Fix from $1,950 2025-12-18
Unclassified HIGH 8.1
CVE-2025-49359

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes ShieldGroup shi…

Mitigation only
Fix from $1,950 2025-12-18
Unclassified HIGH 7.5
CVE-2025-68067

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Stockholm Core…

Mitigation only
Fix from $1,950 2025-12-16
Unclassified HIGH 7.5
CVE-2025-68068

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Stockholm stoc…

Mitigation only
Fix from $1,950 2025-12-16
Edumall HIGH 7.5
CVE-2025-68061

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove EduMall edumall al…

Fix: 4.4.7+
Fix from $1,950 2025-12-16
Minimogwp HIGH 7.5
CVE-2025-68062

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove MinimogWP minimog …

Fix: after 3.9.6
Fix from $1,950 2025-12-16
Unclassified HIGH 7.5
CVE-2025-68065

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in LiquidThemes Hub Core allows…

Mitigation only
Fix from $1,950 2025-12-16
Unclassified HIGH 7.5
CVE-2025-68066

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in PenciDesign Soledad soledad …

Mitigation only
Fix from $1,950 2025-12-16
Unclassified HIGH 8.1
CVE-2025-14475

The Extensive VC Addons for WPBakery page builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.…

Mitigation only
Fix from $1,950 2025-12-13
Unclassified HIGH 7.5
CVE-2025-13886

The LT Unleashed plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.1.1 via the 'template' parameter …

Mitigation only
Fix from $1,950 2025-12-12
Unclassified MEDIUM 6.9
CVE-2024-58302

FoF Pretty Mail 1.1.2 contains a local file inclusion vulnerability that allows administrative users to include arbitrary server files in email templ…

No fix yet
Fix from $1,600 2025-12-11
Unclassified HIGH 7.5
CVE-2025-67526

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThimPress Sailing sailing al…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67527

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in trippleS Digiqole digiqole a…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67528

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in thembay Urna urna allows PHP…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67529

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Opal_WP Fashion fashion2 all…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67530

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in thembay Besa besa allows PHP…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67531

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in trippleS Turitor turitor all…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67532

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in thembay Hara hara allows PHP…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67524

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in NooTheme Jobmonster Elemento…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67525

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Opal_WP ekommart ekommart al…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67521

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Select Core se…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67522

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in NooTheme Jobmonster noo-jobm…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-67523

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in trippleS Exhibz exhibz allow…

Mitigation only
Fix from $1,950 2025-12-09
Wilmer HIGH 8.8
CVE-2025-67515

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Wilmër wilmer …

Fix: 3.5+
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-63074

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Dream-Theme The7 dt-the7 all…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-63076

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Dream-Theme The7 Elements dt…

Mitigation only
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-63062

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AndonDesign UDesign Core u-d…

Mitigation only
Fix from $1,950 2025-12-09