Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)) — Vulnerability Class 1082

1082 vulnerabilities classified as CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-63003 WordPress North - Required Plugin plugin <= 1.4.2 - Local File Inclusion vulnerability — North - Required Plugin 8.1AIHighAI2025-12-09
CVE-2025-67532 WordPress Hara theme <= 1.2.17 - Local File Inclusion vulnerability — Hara 7.5 High2025-12-09
CVE-2025-67531 WordPress Turitor theme < 1.5.3 - Local File Inclusion vulnerability — Turitor 7.5 High2025-12-09
CVE-2025-67528 WordPress Urna theme <= 2.5.12 - Local File Inclusion vulnerability — Urna 7.5 High2025-12-09
CVE-2025-67529 WordPress Fashion theme < 5.3.0 - Local File Inclusion vulnerability — Fashion 7.5 High2025-12-09
CVE-2025-67530 WordPress Besa theme <= 2.3.15 - Local File Inclusion vulnerability — Besa 7.5 High2025-12-09
CVE-2025-67525 WordPress ekommart theme < 4.3.1 - Local File Inclusion vulnerability — ekommart 7.5 High2025-12-09
CVE-2025-67527 WordPress Digiqole theme < 2.2.7 - Local File Inclusion vulnerability — Digiqole 7.5 High2025-12-09
CVE-2025-67524 WordPress Jobmonster Elementor Addon plugin <= 1.1.4 - Local File Inclusion vulnerability — Jobmonster Elementor Addon 7.5 High2025-12-09
CVE-2025-67526 WordPress Sailing theme < 4.4.6 - Local File Inclusion vulnerability — Sailing 7.5 High2025-12-09
CVE-2025-67523 WordPress Exhibz theme <= 3.0.9 - Local File Inclusion vulnerability — Exhibz 7.5 High2025-12-09
CVE-2025-67522 WordPress Jobmonster theme <= 4.8.2 - Local File Inclusion vulnerability — Jobmonster 7.5 High2025-12-09
CVE-2025-67521 WordPress Select Core plugin < 2.6 - Local File Inclusion vulnerability — Select Core 7.5 High2025-12-09
CVE-2025-67515 WordPress Wilmër theme < 3.5 - Local File Inclusion vulnerability — Wilmër 8.8 High2025-12-09
CVE-2025-12851 My auctions allegro <= 3.6.32 - Unauthenticated Local File Inclusion via controller — My auctions allegro 8.1 High2025-12-05
CVE-2025-66115 WordPress Easy Invoice plugin <= 2.1.4 - Local File Inclusion vulnerability — Easy Invoice 6.6 Medium2025-11-21
CVE-2025-41734 Unauthenticated Local File Inclusion in php module — Energy-Controlling EWIO2-M 9.8 Critical2025-11-18
CVE-2025-13088 Category and Product Woocommerce Tabs <= 1.0 - Authenticated (Contributor+) Local File Inclusion — Category and Product Woocommerce Tabs 8.8 High2025-11-18
CVE-2022-4982 DBLTek GoIP-1 vGHSFVT-1.1-67-5 Unauthenticated LFI — GoIP-1 7.5 -2025-11-12
CVE-2025-64287 WordPress Alloggio - Hotel Booking Theme theme <= 1.8 - Local File Inclusion vulnerability — Alloggio - Hotel Booking 8.1 High2025-11-06
CVE-2025-62075 WordPress Simple Payment plugin <= 2.4.6 - Local File Inclusion vulnerability — Simple Payment 7.5 High2025-11-06
CVE-2025-62067 WordPress Savory theme <= 2.5 - Local File Inclusion vulnerability — Savory 8.1 High2025-11-06
CVE-2025-62066 WordPress Revolution theme < 2.5.8 - Local File Inclusion vulnerability — Revolution 7.5 High2025-11-06
CVE-2025-62055 WordPress Academist theme < 1.3 - Local File Inclusion vulnerability — Academist 8.1 High2025-11-06
CVE-2025-62053 WordPress Houzez theme < 4.2.0 - Local File Inclusion vulnerability — Houzez 8.1 High2025-11-06
CVE-2025-62045 WordPress TheGem Theme Elements (for WPBakery) plugin <= 5.10.5.1 - Local File Inclusion vulnerability — TheGem Theme Elements (for WPBakery) 8.1 High2025-11-06
CVE-2025-62014 WordPress ITok theme <= 1.1.42 - Local File Inclusion vulnerability — ITok 9.8 -2025-11-06
CVE-2025-62010 WordPress Famita theme <= 1.54 - Local File Inclusion vulnerability — Famita 9.1 -2025-11-06
CVE-2025-60248 WordPress WPC Product Options for WooCommerce plugin <= 3.1.3 - Local File Inclusion vulnerability — WPC Product Options for WooCommerce 9.1 -2025-11-06
CVE-2025-60241 WordPress Premmerce plugin <= 1.3.19 - Local File Inclusion vulnerability — Premmerce 9.1 -2025-11-06

Vulnerabilities classified as CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)) represent 1082 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.