Axiomthemes Heart Theme Local File Inclusion Vulnerability
Vulnerability
A local file inclusion vulnerability has been identified in the Axiomthemes Heart WordPress theme, specifically in versions through 1.8. This issue arises from improper control of filenames in include or require statements, allowing PHP to include files from the local file system.
Impact
Exploitation of this vulnerability could lead to unauthorized access to local files on the server, potentially allowing for the execution of malicious scripts or disclosure of sensitive information.
Added: Dec 18, 2025, 9:13 AM
Updated: Dec 18, 2025, 9:13 AM
