
CVE-2026-22503 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Nelson nelson allows PHP Local File … https://www.cve.org/CVERecord?id=CVE-2026-22503
Post summary
The text references CVE-2026-22503 as a PHP remote file inclusion flaw in ThemeREX Nelson, providing technical details but no proof of concept, exploit code, active exploitation, or patch information.
