Remote File Inclusion Vulnerability in Unfoldwp Magazine by WordPress
CVE-2025-53248
8.1HIGH
What is CVE-2025-53248?
The Unfoldwp Magazine theme is susceptible to a PHP Remote File Inclusion vulnerability, which allows attackers to manipulate the filename used in include/require statements. This can lead to unauthorized access and potential exposure of sensitive files on the server. The affected versions range from n/a to 1.2.2, making it essential for users to apply the necessary updates to mitigate the risk.
Affected Version(s)
Magazine <= 1.2.2