
CVE-2026-28023 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Nuts nuts allows PHP Local File Incl… https://www.cve.org/CVERecord?id=CVE-2026-28023
Post summary
A new PHP Remote File Inclusion vulnerability in ThemeREX Nuts nuts (CVE-2026-28023) has been disclosed, with technical details provided but no PoC, exploit, or patch information available.
