
🚨 Critical security update for YOOtheme We fixed 2 vulnerabilities: CVE-2026-75115: Arbitrary file read (contributor-level) CVE-2026-76613: SQL injection (contributor-level) Update YOOtheme immediately to 5.0.41 if untrusted users have permission to create articles.
Post summary
YOOtheme issued a critical update (v5.0.41) to fix CVE‑2026‑75115 and CVE‑2026‑76613; users are urged to update immediately.

