
CVE-2026-28120 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Dr.Patterson dr-patterson allows PHP… https://www.cve.org/CVERecord?id=CVE-2026-28120
Post summary
This brief note announces the CVE‑2026‑28120 RFI flaw in the ThemeREX Dr.Patterson Dr‑patterson theme, providing the vulnerability classification but no further exploitation or mitigation details.
