CVE-2025-59555: WordPress Medizin Theme < 1.9.7 - Local File Inclusion Vulnerability
Published Oct 22, 2025
·Updated
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Medizin medizin allows PHP Local File Inclusion.This issue affects Medizin: from n/a through < 1.9.7.
Affected Software
3 affected components
ThemeMove Medizin<1.9.7
WordPress Medizin Theme<1.9.7
ThemeMove Medizin Wordpress<1.9.7
Event History
Oct 22, 2025
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-59555?
CVE-2025-59555 is considered a high severity vulnerability due to its potential for local file inclusion attacks.
2
How do I fix CVE-2025-59555?
To fix CVE-2025-59555, upgrade the ThemeMove Medizin to version 1.9.7 or later.
3
What types of attacks can CVE-2025-59555 facilitate?
CVE-2025-59555 can facilitate local file inclusion attacks, allowing attackers to execute local files on the server.
4
Which versions of ThemeMove Medizin are affected by CVE-2025-59555?
CVE-2025-59555 affects all versions of ThemeMove Medizin prior to version 1.9.7.
5
Is CVE-2025-59555 applicable to other themes or software?
CVE-2025-59555 is specifically associated with the ThemeMove Medizin and does not apply to other WordPress themes.