CVE-2025-58933

Name
CVE-2025-58933
Description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Anubis anubis allows PHP Local File Inclusion.This issue affects Anubis: from n/a through <= 1.25.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
vdb-entry https://vdp.patchstack.com/database/Wordpress/Theme/anubis/vulnerability/wordpress-anubis-theme-1-25-local-file-inclusion-vulnerability?_s_id=cve
audit@patchstack.com https://patchstack.com/database/Wordpress/Theme/anubis/vulnerability/wordpress-anubis-theme-1-25-local-file-inclusion-vulnerability?_s_id=cve

Match rules

CPE URI Source package Min version Max version
anubis == n/a == None
cpe:2.3:a:axiomthemes:anubis:*:*:*:*:*:wordpress:*:* anubis >= None <= 1.25

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
anubis edge-community 1.24.0-r1 Achill Gilgenast <achill@achill.org> possibly vulnerable
anubis edge-community 1.24.0-r0 Achill Gilgenast <achill@achill.org> possibly vulnerable
anubis edge-community 1.23.1-r1 Achill Gilgenast <achill@achill.org> possibly vulnerable
anubis edge-community 1.23.1-r0 Achill Gilgenast <achill@achill.org> possibly vulnerable
anubis 3.23-community 1.23.1-r2 Achill Gilgenast <achill@achill.org> possibly vulnerable
anubis 3.23-community 1.23.1-r1 Achill Gilgenast <achill@achill.org> possibly vulnerable