Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)) — Vulnerability Class 1082

1082 vulnerabilities classified as CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-60240 WordPress AnyComment plugin <= 0.3.6 - Local File Inclusion vulnerability — AnyComment 8.1 -2025-11-06
CVE-2025-60204 WordPress WooCommerce Store Toolkit plugin <= 2.4.3 - Local File Inclusion vulnerability — WooCommerce Store Toolkit 7.5 High2025-11-06
CVE-2025-60203 WordPress Store Exporter plugin <= 2.7.6 - Local File Inclusion vulnerability — Store Exporter 7.5 High2025-11-06
CVE-2025-60202 WordPress Favorites plugin <= 2.3.6 - Local File Inclusion vulnerability — Favorites 7.5 High2025-11-06
CVE-2025-60201 WordPress WP Customer Area plugin <= 8.3.5 - Local File Inclusion vulnerability — WP Customer Area 7.5 High2025-11-06
CVE-2025-60200 WordPress LearnPress Export Import plugin <= 4.1.2 - Local File Inclusion vulnerability — LearnPress Export Import 7.5 High2025-11-06
CVE-2025-60199 WordPress InHype - Blog & Magazine WordPress Theme theme <= 1.5.2 - Local File Inclusion vulnerability — InHype - Blog & Magazine WordPress Theme 8.1 High2025-11-06
CVE-2025-60198 WordPress Saxon - Viral Content Blog & Magazine Marketing WordPress Theme theme <= 1.9.3 - Local File Inclusion vulnerability — Saxon - Viral Content Blog & Magazine Marketing WordPress Theme 9.8 -2025-11-06
CVE-2025-60197 WordPress Simple Contact Forms plugin <= 1.6.4 - Local File Inclusion vulnerability — Simple Contact Forms 8.1 High2025-11-06
CVE-2025-60196 WordPress Clearblue® Ovulation Calculator plugin <= 1.2.4 - Local File Inclusion vulnerability — Clearblue® Ovulation Calculator 7.5 High2025-11-06
CVE-2025-60194 WordPress Premmerce Product Search for WooCommerce plugin <= 2.2.4 - Local File Inclusion vulnerability — Premmerce Product Search for WooCommerce 7.5 High2025-11-06
CVE-2025-60193 WordPress Premmerce User Roles plugin <= 1.0.13 - Local File Inclusion vulnerability — Premmerce User Roles 7.5 High2025-11-06
CVE-2025-60191 WordPress Premmerce Wishlist for WooCommerce plugin <= 1.1.10 - Local File Inclusion vulnerability — Premmerce Wishlist for WooCommerce 7.5 High2025-11-06
CVE-2025-60192 WordPress Premmerce Wholesale Pricing for WooCommerce plugin <= 1.1.10 - Local File Inclusion vulnerability — Premmerce Wholesale Pricing for WooCommerce 7.5 High2025-11-06
CVE-2025-60189 WordPress PoloPag – Pix Automático para Woocommerce plugin <= 2.0.9 - Local File Inclusion vulnerability — PoloPag &#8211; Pix Automático para Woocommerce 9.1 -2025-11-06
CVE-2025-60190 WordPress Immocaster WordPress Plugin plugin <= 1.3.6 - Local File Inclusion vulnerability — Immocaster WordPress Plugin 8.1 High2025-11-06
CVE-2025-60074 WordPress Lazy Load Optimizer plugin <= 1.4.7 - Local File Inclusion vulnerability — Lazy Load Optimizer 7.5 High2025-11-06
CVE-2025-60073 WordPress Responsive Sidebar plugin <= 1.2.2 - Local File Inclusion vulnerability — Responsive Sidebar 8.1 -2025-11-06
CVE-2025-58995 WordPress Leblix Theme <= 2.4 - Local File Inclusion Vulnerability — Leblix 8.1 High2025-11-06
CVE-2025-58994 WordPress Greenify theme <= 2.2 - Local File Inclusion vulnerability — Greenify 8.1 High2025-11-06
CVE-2025-53252 WordPress Zegen Theme <= 1.1.9 - Local File Inclusion Vulnerability — Zegen 7.5 High2025-11-06
CVE-2025-48330 WordPress Real Time Validation for Gravity Forms <= 1.7.0 - Local File Inclusion Vulnerability — Real Time Validation for Gravity Forms 7.5 High2025-11-06
CVE-2025-48290 WordPress Kinsley theme <= 3.4.4 - Local File Inclusion vulnerability — Kinsley 8.1 High2025-11-06
CVE-2025-39468 WordPress Modal Survey plugin <= 2.0.2.0.1 - Local File Inclusion vulnerability — Modal Survey 8.1 High2025-11-06
CVE-2025-39466 WordPress Dør theme <= 2.4 - Local File Inclusion Vulnerability — Dør 8.1 High2025-11-06
CVE-2025-39463 WordPress Dessau theme < 1.9 - Local File Inclusion vulnerability — Dessau 7.5 High2025-11-06
CVE-2025-12497 Premium Portfolio Features for Phlox theme <= 2.3.10 - Unauthenticated Local File Inclusion via args[extra_template_path] — Premium Portfolio Features for Phlox theme 8.1 High2025-11-05
CVE-2025-11704 Elegance Menu <= 1.9 - Authenticated (Contributor+) Local File Inclusion — Elegance Menu 7.5 High2025-11-04
CVE-2025-11920 WPCOM Member <= 1.7.14 - Authenticated (Contributor+) Local File Inclusion via Shortcode — WPCOM Member 8.8 High2025-11-01
CVE-2025-64364 WordPress Masterstudy theme < 4.8.126 - Local File Inclusion vulnerability — Masterstudy 8.1 -2025-10-31

Vulnerabilities classified as CWE-98 (PHP程序中Include/Require语句包含文件控制不恰当(PHP远程文件包含)) represent 1082 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.