CVE-2025-26986: WordPress Pearl Theme < 3.4.8 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in StylemixThemes Pearl - Corporate Business pearl allows PHP Local File Inclusion.This issue affects Pearl - Corporate Business: from n/a through < 3.4.8.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-26986?
The severity of CVE-2025-26986 is considered critical due to its potential for remote file inclusion.
How do I fix CVE-2025-26986?
To fix CVE-2025-26986, update the StylemixThemes Pearl - Corporate Business to version 3.4.8 or later immediately.
What is the impact of CVE-2025-26986 on my website?
CVE-2025-26986 can lead to unauthorized access and execution of malicious scripts on your server, compromising your website's security.
Which versions of Pearl - Corporate Business are affected by CVE-2025-26986?
CVE-2025-26986 affects all versions of Pearl - Corporate Business before 3.4.8.
Is local file inclusion a common vulnerability type?
Yes, local file inclusion is a common vulnerability that can lead to severe security issues in web applications.