
CVE-2026-28025 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Stargaze stargaze allows PHP Local F… https://www.cve.org/CVERecord?id=CVE-2026-28025
Post summary
The message announces the discovery of a PHP Remote File Inclusion vulnerability (CVE-2026-28025) in ThemeREX Stargaze, providing basic technical details but no PoC, exploit, or patch information.
