CVE-2025-53334: WordPress Jannah Theme < 7.5.1 - Local File Inclusion Vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in TieLabs Jannah allows PHP Local File Inclusion. This issue affects Jannah: from n/a through 7.4.1.
Other sources
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in TieLabs Jannah jannah allows PHP Local File Inclusion.This issue affects Jannah: from n/a through < 7.5.1.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53334?
The severity of CVE-2025-53334 is considered high due to its potential for PHP Local File Inclusion.
How do I fix CVE-2025-53334?
To fix CVE-2025-53334, update TieLabs Jannah to version 7.4.2 or higher to mitigate the vulnerability.
Which versions of Jannah are affected by CVE-2025-53334?
CVE-2025-53334 affects all versions of TieLabs Jannah up to and including 7.4.1.
What type of vulnerability is CVE-2025-53334?
CVE-2025-53334 is classified as a Remote File Inclusion vulnerability that allows for local file inclusions in PHP applications.
Can CVE-2025-53334 be exploited remotely?
Yes, CVE-2025-53334 can be exploited remotely by attackers to execute local files on the server.