Permalink
CVE-2026-28123
8.1 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): HIGH
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
Activity log
- Created suggestion
WordPress Veil theme <= 1.9 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Veil veil allows PHP Local File Inclusion.This issue affects Veil: from n/a through <= 1.9.
References
Affected products
veil
- =<<= 1.9
Matching in nixpkgs
pkgs.veilid
Open-source, peer-to-peer, mobile-first, networked application framework
Package maintainers
-
@bbigras Bruno Bigras <bigras.bruno@gmail.com>
-
@qbit Aaron Bieber <aaron@bolddaemon.com>
-
@honnip Jung seungwoo <me@honnip.page>