Untriaged
Permalink
CVE-2025-58932
8.2 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): LOW
- Availability impact (A): NONE
WordPress Prisma theme <= 1.10 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Prisma prisma allows PHP Local File Inclusion.This issue affects Prisma: from n/a through <= 1.10.
References
Affected products
prisma
- =<<= 1.10
Matching in nixpkgs
pkgs.prisma
Next-generation ORM for Node.js and TypeScript
pkgs.prisma-engines
Collection of engines that power the core stack for Prisma
pkgs.prisma-language-server
Language server for Prisma
pkgs.python312Packages.prisma
Auto-generated and fully type-safe database client for prisma
pkgs.python313Packages.prisma
Auto-generated and fully type-safe database client for prisma
pkgs.typstPackages.prismath_0_1_0
A mathematical brackets colorizer
pkgs.vscode-extensions.prisma.prisma
VSCode extension for syntax highlighting, formatting, auto-completion, jump-to-definition and linting for .prisma files
pkgs.tree-sitter-grammars.tree-sitter-prisma
None
pkgs.python312Packages.tree-sitter-grammars.tree-sitter-prisma
Python bindings for tree-sitter-prisma
Package maintainers
-
@aqrln Alexey Orlenko <nix@aqrln.net>
-
@tomhoule Tom Houle <secondary+nixpkgs@tomhoule.com>
-
@fabaff Fabian Affolter <mail@fabian-affolter.ch>
-
@A-jay98 Ali Jamadi <ali@jamadi.me>
-
@mightyiam Shahar "Dawn" Or <mightyiampresence@gmail.com>
-
@stepbrobd Yifei Sun <ysun@hey.com>
-
@adfaure Adrien Faure <adfaure@pm.me>
-
@cherrypiejam Gongqi Huang
-
@mmkaram Mahdy Karam