
CVE-2026-22405 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Overton overton allows PHP Loca… https://www.cve.org/CVERecord?id=CVE-2026-22405
Post summary
A new PHP Remote File Inclusion vulnerability (CVE-2026-22405) has been disclosed for Mikado‑Themes Overton, detailing improper filename control in include/require statements.
