PHP Remote File Inclusion Vulnerability in Docket Cache by Nawawi Jamili
CVE-2025-68506
9.8CRITICAL
What is CVE-2025-68506?
The Docket Cache plugin by Nawawi Jamili is susceptible to a PHP Remote File Inclusion vulnerability, allowing attackers to exploit improper control of filename parameters in include/require statements. This may lead to unauthorized access to local files on the server, jeopardizing the integrity and security of WordPress sites running affected versions. It is critical for users to update their Docket Cache plugin to the latest version to mitigate this significant security threat.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Docket Cache <= n/a
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Nguyen Xuan Chien | Patchstack Bug Bounty Program