Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)) — Vulnerability Class 1082

1082 vulnerabilities classified as CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-69034 WordPress Lekker theme <= 1.8 - Local File Inclusion vulnerability — Lekker 8.1 High2025-12-30
CVE-2025-68996 WordPress Responsive Posts Carousel Pro plugin <= 15.1 - Local File Inclusion vulnerability — Responsive Posts Carousel Pro 7.5 High2025-12-30
CVE-2025-68984 WordPress Puca theme <= 2.6.39 - Local File Inclusion vulnerability — Puca 7.5 High2025-12-30
CVE-2025-68987 WordPress Cinerama theme <= 2.9 - Local File Inclusion vulnerability — Cinerama 7.5 High2025-12-30
CVE-2025-68985 WordPress Aora theme <= 1.3.15 - Local File Inclusion vulnerability — Aora 7.5 High2025-12-30
CVE-2025-68983 WordPress Greenmart theme <= 4.2.11 - Local File Inclusion vulnerability — Greenmart 7.5 High2025-12-30
CVE-2025-68974 WordPress WordPress Social Login and Register plugin <= 7.7.0 - Local File Inclusion vulnerability — WordPress Social Login and Register 6.6 Medium2025-12-30
CVE-2025-68870 WordPress CookieHint WP plugin <= 1.0.0 - Local File Inclusion vulnerability — CookieHint WP 7.5 High2025-12-29
CVE-2025-68877 WordPress CedCommerce Integration for Good Market plugin <= 1.0.6 - Local File Inclusion vulnerability — CedCommerce Integration for Good Market 7.5 High2025-12-29
CVE-2025-68506 WordPress Docket Cache plugin <= 24.07.03 - Local File Inclusion vulnerability — Docket Cache 8.1 High2025-12-24
CVE-2025-68563 WordPress Subscribe to Unlock Lite plugin <= 1.3.0 - Local File Inclusion vulnerability — Subscribe to Unlock Lite 7.5 High2025-12-24
CVE-2025-68540 WordPress Fana theme <= 1.1.35 - Local File Inclusion vulnerability — Fana 7.5 High2025-12-24
CVE-2025-68537 WordPress Zota theme <= 1.3.14 - Local File Inclusion vulnerability — Zota 7.5 High2025-12-24
CVE-2025-68530 WordPress Bookory theme <= 2.2.7 - Local File Inclusion vulnerability — Bookory 7.5 High2025-12-24
CVE-2021-47734 CMSimple 5.4 Authenticated Local File Inclusion Remote Code Execution — CMSimple 7.8 High2025-12-23
CVE-2025-68546 WordPress Nika theme <= 1.2.14 - Local File Inclusion vulnerability — Nika 7.5 High2025-12-23
CVE-2025-68544 WordPress Diza theme <= 1.3.15 - Local File Inclusion vulnerability — Diza 7.5 High2025-12-23
CVE-2025-68560 WordPress TheGem Theme Elements (for Elementor) plugin <= 5.10.5.1 - Local File Inclusion vulnerability — TheGem Theme Elements (for Elementor) 7.5 High2025-12-23
CVE-2025-13641 Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery <= 3.59.12 - Authenticated (Contributor+) Local File Inclusion via 'template' — Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery 8.8 High2025-12-18
CVE-2025-64377 WordPress ListingPro theme < 2.9.10 - Local File Inclusion vulnerability — ListingPro 9.1AICriticalAI2025-12-18
CVE-2025-64373 WordPress Traveler theme < 3.2.6 - Local File Inclusion vulnerability — Traveler 8.1 High2025-12-18
CVE-2025-64223 WordPress PenNews theme < 6.7.3 - Local File Inclusion vulnerability — PenNews 9.1AICriticalAI2025-12-18
CVE-2025-64205 WordPress Jannah theme <= 7.6.0 - Local File Inclusion vulnerability — Jannah 8.1 High2025-12-18
CVE-2025-64193 WordPress XStore theme < 9.6.1 - Local File Inclusion vulnerability — XStore 9.1AICriticalAI2025-12-18
CVE-2025-6326 WordPress Inset theme <= 1.18.0 - Local File Inclusion Vulnerability — Inset 8.1AIHighAI2025-12-18
CVE-2025-60078 WordPress Task Manager plugin <= 3.0.2 - Local File Inclusion vulnerability — Task Manager 7.5 High2025-12-18
CVE-2025-60072 WordPress Anchor smooth scroll plugin <= 1.0.2 - Local File Inclusion vulnerability — Anchor smooth scroll 8.1 High2025-12-18
CVE-2025-60071 WordPress Riode | Multi-Purpose WooCommerce theme <= 1.6.23 - Local File Inclusion vulnerability — Riode 8.1 High2025-12-18
CVE-2025-60076 WordPress Ray Enterprise Translation plugin <= 1.7.1 - Local File Inclusion vulnerability — Ray Enterprise Translation 7.5 High2025-12-18
CVE-2025-60064 WordPress Renewal theme <= 1.2.2 - Local File Inclusion vulnerability — Renewal 8.1 High2025-12-18

Vulnerabilities classified as CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)) represent 1082 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.