Skip to main content

CWE archive

CWE-98 CVEs

Programmatic archive

1,269 CVEs tagged with CWE-9865 Critical, 1,147 High, 55 Medium, 2 Low, 0 Unrated.

CVE-2026-28023

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Nuts nuts allows PHP Local File Inclusion.This is…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28022

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Foodie foodie allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28021

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Craftis craftis allows PHP Local File Inclusion.T…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28020

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Chroma chroma allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28019

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Manoir manoir allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28018

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Global Logistics globallogistics allows PHP Local…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28017

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Green Thumb greenthumb allows PHP Local File Incl…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28016

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Luxury Wine luxury-wine allows PHP Local File Inc…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28015

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX ShiftCV shift-cv allows PHP Local File Inclusion.…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28014

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Translogic translogic allows PHP Local File Inclu…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28013

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Kratz kratz allows PHP Local File Inclusion.This…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28012

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Gridiron gridiron allows PHP Local File Inclusion…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28011

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Yottis yottis allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28010

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Scientia scientia allows PHP Local File Inclusion…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28009

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX DroneX dronex allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28007

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Coinpress coinpress allows PHP Local File Inclusi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-28006

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Yungen yungen allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27998

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Vixus vixus allows PHP Local File Inclusion.This…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27997

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Maxify maxify allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27996

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Lingvico lingvico allows PHP Local File Inclusion…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27995

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Justitia justitia allows PHP Local File Inclusion…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27994

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Tediss tediss allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27993

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Aldo aldo allows PHP Local File Inclusion.This is…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27992

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Meals & Wheels meals-wheels allows PHP Local File…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27991

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Avventure avventure allows PHP Local File Inclusi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9
Showing 301-325 of 1,269 CVEsPage 13 of 51