
CVE-2026-28077 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Vapester vapester allows PHP Local F… https://www.cve.org/CVERecord?id=CVE-2026-28077
Post summary
The tweet merely announces CVE-2026-28077, describing it as a PHP Remote File Inclusion flaw in ThemeREX Vapester, and links to the CVE record. No exploit details or mitigation steps are provided.
