PT-2026-27978 · WordPress · Amfissa

Published

2026-03-25

·

Updated

2026-03-29

·

CVE-2026-27079

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Mikado-Themes Amfissa versions n/a through 1.1
Description A flaw exists in the handling of filenames for include/require statements within the PHP program of Mikado-Themes Amfissa. This issue, known as a 'PHP Remote File Inclusion', specifically allows for PHP Local File Inclusion. The vulnerable component is related to the processing of file names used in include or require statements.
Recommendations Versions prior to 1.2 should be updated.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-27079

Affected Products

Amfissa