Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in G5Theme Handmade Framework allows PHP Local File Inclusion.This issue affects Handmade Framework: from n/a through 3.9.
Metrics
Affected Vendors & Products
References
History
Fri, 09 Jan 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress |
|
| Vendors & Products |
Wordpress
Wordpress wordpress |
Thu, 08 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Jan 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in G5Theme Handmade Framework allows PHP Local File Inclusion.This issue affects Handmade Framework: from n/a through 3.9. | |
| Title | WordPress Handmade Framework plugin <= 3.9 - Local File Inclusion vulnerability | |
| Weaknesses | CWE-98 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-01-08T20:11:20.853Z
Reserved: 2026-01-07T13:44:43.226Z
Link: CVE-2026-22521
Updated: 2026-01-08T20:11:15.723Z
Status : Awaiting Analysis
Published: 2026-01-08T17:15:52.100
Modified: 2026-01-08T18:08:18.457
Link: CVE-2026-22521
No data.
OpenCVE Enrichment
Updated: 2026-01-09T13:24:57Z