Vulnerabilities
CVE-2026-28125 - WordPress Midi theme <= 1.14 - local file inclusion vulnerability
CVE ID : CVE-2026-28125 Published : March 5, 2026, 6:16 a.m. | 1 hour, 10 minutes ago Description : Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Midi midi allows PHP Local File Inclusion.This issue affects Midi: from n/a through <=Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE Details
CVE ID
Published
March 5, 2026
Affected Product:
PHP
Attack Vector:
Local