Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.1 CVE-2025-22707 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Moody tm-moody all… Moody after 2.7.3 Fix from $1,9502026-01-08 HIGH 8.1 CVE-2025-22708 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Mitech mitech allo… Mitech after 2.3.4 Fix from $1,9502026-01-08 HIGH 8.1 CVE-2025-14429 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove AeroLand aeroland … Aeroland after 1.6.6 Fix from $1,9502026-01-08 HIGH 8.1 CVE-2025-14430 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Brook brook allows… Brook after 2.9.0 Fix from $1,9502026-01-08 HIGH 8.1 CVE-2025-60069 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove MinimogWP minimog … Minimogwp after 3.9.6 Fix from $1,9502025-12-18 HIGH 7.5 CVE-2025-68061 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove EduMall edumall al… Edumall 4.4.7+ Fix from $1,9502025-12-16 HIGH 7.5 CVE-2025-68062 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove MinimogWP minimog … Minimogwp after 3.9.6 Fix from $1,9502025-12-16 HIGH 8.1 CVE-2025-59558 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Billey billey allo… Billey 2.1.6+ Fix from $1,9502025-10-22 HIGH 8.1 CVE-2025-59564 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove EduMall edumall al… Edumall 4.4.5+ Fix from $1,9502025-10-22 HIGH 8.1 CVE-2025-58967 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Businext businext … Businext 2.4.4+ Fix from $1,9502025-10-22 HIGH 8.1 CVE-2025-59555 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Medizin medizin al… Medizin 1.9.7+ Fix from $1,9502025-10-22 HIGH 8.1 CVE-2025-58958 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove SmilePure smilepur… Smilepure 1.8.5+ Fix from $1,9502025-10-22 CRITICAL 9.8 CVE-2025-58206 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove MaxCoach maxcoach … Maxcoach after 3.2.5 Fix from $2,3002025-09-05 CRITICAL 9.8 CVE-2025-58210 Missing Authorization vulnerability in ThemeMove Makeaholic makeaholic allows Exploiting Incorrectly Configured Access Control Security Levels.This i… Makeaholic 1.8.7+ Fix from $2,3002025-09-03 CRITICAL 9.8 CVE-2025-54701 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Unicamp unicamp al… Unicamp 2.6.4+ Fix from $2,3002025-08-14 CRITICAL 9.8 CVE-2025-54700 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Makeaholic makeaho… Makeaholic 1.8.5+ Fix from $2,3002025-08-14 CRITICAL 9.8 CVE-2025-39474 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ThemeMove Amely amely allows SQL Injection.This… Amely 3.2.0+ Fix from $2,3002025-06-27 HIGH 8.1 CVE-2025-32309 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Healsoul healsoul … Healsoul 2.2.4+ Fix from $1,9502025-05-23 MEDIUM 5.4 CVE-2021-24950 The Insight Core WordPress plugin through 1.0 does not have any authorisation and CSRF checks in the insight_customizer_options_import (available to … Insight Core No fix yet Fix from $1,6002022-03-14