Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Hendon hendon allows PHP Local File Inclusion.This issue affects Hendon: from n/a through < 1.7.
Metrics
Affected Vendors & Products
References
History
Tue, 20 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 20 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 09 Jan 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mikado-themes
Mikado-themes hendon Wordpress Wordpress wordpress |
|
| Vendors & Products |
Mikado-themes
Mikado-themes hendon Wordpress Wordpress wordpress |
Thu, 08 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 08 Jan 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Hendon hendon allows PHP Local File Inclusion.This issue affects Hendon: from n/a through < 1.7. | |
| Title | WordPress Hendon theme < 1.7 - Local File Inclusion vulnerability | |
| Weaknesses | CWE-98 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2026-01-08T09:17:50.059Z
Updated: 2026-01-20T14:28:27.358Z
Reserved: 2025-12-15T09:59:55.701Z
Link: CVE-2025-67937
Updated: 2026-01-08T18:20:05.499Z
Status : Awaiting Analysis
Published: 2026-01-08T10:15:52.937
Modified: 2026-01-20T15:19:33.127
Link: CVE-2025-67937
No data.