PHP Remote File Inclusion in Email Delivery Solved! by Adrian Tobey
CVE-2025-31015
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 11 April 2025
What is CVE-2025-31015?
A vulnerability exists in the Email Delivery Solved! plugin by Adrian Tobey that allows attackers to exploit improper control of filename parameters, leading to PHP Local File Inclusion. This issue permits an attacker to potentially unveil sensitive system files or execute arbitrary PHP code. The plugin version affected by this vulnerability spans from an unspecified release to version 1.3.1. Implementing proper validation and sanitization measures in file handling could mitigate the risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
WordPress SMTP Service, Email Delivery Solved! β MailHawk <= 1.3.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved