
🚨*CVE* CVE-2026-25457 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Mixtape mixtape allows PHP Loca… https://www.cve.org/CVERecord?id=CVE-2026-25457 ----- Traducción: CVE-2026-25457 Inc… http://infoflow.cloud`
Post summary
A new CVE (CVE‑2026‑25457) describing an RFI vulnerability in the Select‑Themes Mixtape plugin has just been announced, highlighting improper filename control for include/require statements.

