
🚨*CVE* CVE-2026-28020 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Chroma chroma allows PHP Local File … https://www.cve.org/CVERecord?id=CVE-2026-28020 ----- Traducción: CVE-2026-28020 Con… http://infoflow.cloud`
Post summary
The post announces CVE-2026-28020, a PHP RFI vulnerability in ThemeREX Chroma, with a brief technical description and a link to the CVE record.

