
CVE-2026-6262 The Betheme theme for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 28.4. This is due to the upload_icons() function workflow usi… https://www.cve.org/CVERecord?id=CVE-2026-6262
Post summary
The Betheme WordPress theme versions up to 28.4 allow arbitrary file deletion through the upload_icons() function, as detailed in CVE‑2026‑6262.

