PT-2026-27931 · Lovedate · Lovedate
CVE-2026-25381
·
Publicado
2026-03-25
·
Atualizado
2026-03-30
CVSS v3.1
8.1
Alta
| Vetor | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
LoveDate versions prior to 3.8.6
Description
A flaw exists in the handling of filenames used in include/require statements within the PHP program LoveDate. This can lead to a PHP Local File Inclusion issue. The issue allows for the inclusion of local PHP files.
Recommendations
Update LoveDate to version 3.8.6 or later.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Lovedate