Vulnerability index

Browse CVEs

1,269 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness PHP File Inclusion (RFI/LFI)CWE-98 × clear
HIGH 8.1 CVE-2026-73400 Unauthenticated Local File Inclusion in Restaurant Menu by MotoPress <= 2.4.11 versions. Fix unknown Fix from $4,9002026-08-18 HIGH 8.1 CVE-2026-32464 Unauthenticated Local File Inclusion in Theme Test Drive <= 2.9.1 versions. Fix unknown Fix from $4,9002026-08-18 HIGH 8.1 CVE-2026-28570 Unauthenticated Local File Inclusion in Vavo Core <= 2.3.0 versions. Fix unknown Fix from $4,9002026-08-18 HIGH 8.1 CVE-2026-66656 Unauthenticated Local File Inclusion in Foton Core <= 1.1.1 versions. No fix yet Fix from $4,9002026-08-13 HIGH 8.1 CVE-2026-66657 Unauthenticated Local File Inclusion in Biagiotti Core <= 2.1.1 versions. No fix yet Fix from $4,9002026-08-13 HIGH 8.1 CVE-2026-66653 Unauthenticated Local File Inclusion in Barista <= 2.5.1 versions. No fix yet Fix from $4,9002026-08-13 HIGH 8.1 CVE-2026-66450 Unauthenticated Local File Inclusion in Geo Mashup <= 1.13.18 versions. No fix yet Fix from $4,9002026-08-13 HIGH 8.1 CVE-2026-66710 Unauthenticated Local File Inclusion in e2pdf <= 1.32.40 versions. No fix yet Fix from $1,9502026-08-06 MEDIUM 6.6 CVE-2026-17605 The Payment forms, Buy now buttons, and Invoicing System | GetPaid plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, … No fix yet Fix from $1,6002026-08-01 MEDIUM 5.1 CVE-2026-63302 Quick.CMS is vulnerable to Local File Inclusion (LFI) in the admin.php endpoint via the p parameter. An authenticated attacker with admin privileges … No fix yet Fix from $1,6002026-07-28 HIGH 7.5 CVE-2026-65481 Contributor Local File Inclusion in Vino <= 1.9 versions. No fix yet Fix from $1,9502026-07-23 HIGH 7.5 CVE-2026-65477 Contributor Local File Inclusion in Tonda Core <= 2.1.2 versions. No fix yet Fix from $1,9502026-07-23 HIGH 8.8 CVE-2026-44177 Kirby is an open-source content management system. In versions 5.3.0 and above but prior to 5.4.1, Kirby did not correctly validate the provided user… No fix yet Fix from $1,9502026-07-16 HIGH 7.7 CVE-2026-46687 Emlog is an open source website building system. In 2.6.13 and earlier, the article publishing interface stores a path-traversal template parameter f… No fix yet Fix from $1,9502026-07-16 HIGH 7.5 CVE-2026-57799 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Nuss nuss allows PHP L… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57800 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Overworld overwo… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57801 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes SetSail setsai… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57802 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur allow… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57803 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur Core … Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57804 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CodexThemes TheGem Theme Ele… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57805 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Tonda tonda al… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57790 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Billey billey allo… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57791 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Brook brook allows… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57792 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Dør dor allows… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57793 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Elated-Themes Flow flow allo… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57794 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Golo Framework golo-fr… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57795 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in themelexus Kitchor kitchor a… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57796 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in VLThemes Leedo leedo allows … Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57798 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SaurabhSharma NewsPlus Short… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57788 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Aalto aalto allo… Mitigation only Fix from $1,9502026-07-13