Skip to main content

CWE archive

CWE-98 CVEs

Programmatic archive

1,269 CVEs tagged with CWE-9865 Critical, 1,147 High, 55 Medium, 2 Low, 0 Unrated.

CVE-2026-27990

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX ConFix confix allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27989

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Quanzo quanzo allows PHP Local File Inclusion.Thi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27988

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Equadio equadio allows PHP Local File Inclusion.T…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27987

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX The Qlean the-qlean allows PHP Local File Inclusi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27986

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX OsTende ostende allows PHP Local File Inclusion.T…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27985

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Humanum humanum allows PHP Local File Inclusion.T…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27383

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RadiusTheme Metro metro allows PHP Local File Inclusion.Th…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27381

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in thembay Aora aora allows PHP Local File Inclusion.This iss…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27342

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes TopFit - Fitness and Gym WordPress Theme top…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27341

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes TopScorer - Sports WordPress Theme topscorer…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27340

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Apollo | Night Club, DJ Event WordPress Theme…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27339

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Buzz Stone | Magazine & Viral Blog WordPress…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27337

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Chronicle - Lifestyle Magazine & Blog WordPre…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27336

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Consultor | Consulting, Accounting & Legal Co…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27335

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Ekoterra - NonProfit, Green Energy & Ecology…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27334

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in dan_fisher Alchemists alchemists allows PHP Local File Inc…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27326

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes AC Services | HVAC, Air Conditioning & Heating…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-27097

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes CasaMia | Property Rental Real Estate WordPre…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-23801

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in fuelthemes The Issue theissue allows PHP Local File Inclus…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-22478

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Elated-Themes FindAll findall allows PHP Local File Inclus…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-22477

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Felizia felizia allows PHP Local File Inclusi…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-22476

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Elated-Themes Etchy etchy allows PHP Local File Inclusion.…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-22457

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Wanderland wanderland allows PHP Local File…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-22456

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Elated-Themes Askka askka allows PHP Local File Inclusion.…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-22452

Published Mar 5, 2026

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Hoverex hoverex allows PHP Local File Inclusion.T…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9
Showing 326-350 of 1,269 CVEsPage 14 of 51