
CVE-2026-28054 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Legal Stone legal-stone allows PHP L… https://www.cve.org/CVERecord?id=CVE-2026-28054
Post summary
The excerpt references CVE‑2026‑28054—a PHP RFI vulnerability in ThemeREX Legal Stone—providing technical details without mention of PoC, exploit code, patch, or active exploitation.
