Axiomthemes Heart Theme Local File Inclusion Vulnerability

Vulnerability

A local file inclusion vulnerability has been identified in the Axiomthemes Heart WordPress theme, specifically in versions through 1.8. This issue arises from improper control of filenames in include or require statements, allowing PHP to include files from the local file system.

Impact

Exploitation of this vulnerability could lead to unauthorized access to local files on the server, potentially allowing for the execution of malicious scripts or disclosure of sensitive information.

Added: Dec 18, 2025, 9:13 AM
Updated: Dec 18, 2025, 9:13 AM

Vulnerability Rating