CVE-2025-68510: WordPress Photography theme < 7.7.5 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeGoods Photography photography allows PHP Local File Inclusion.This issue affects Photography: from n/a through < 7.7.5.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-68510?
The severity of CVE-2025-68510 is high due to its potential for local file inclusion which can lead to remote code execution.
How do I fix CVE-2025-68510?
To fix CVE-2025-68510, update the ThemeGoods Photography theme to version 7.7.5 or later.
What is the impact of CVE-2025-68510 on the affected systems?
CVE-2025-68510 can lead to unauthorized access and execution of arbitrary files on the server, compromising security.
Who is affected by CVE-2025-68510?
CVE-2025-68510 affects users of the ThemeGoods Photography theme versions prior to 7.7.5.
Is CVE-2025-68510 related to any other vulnerabilities?
CVE-2025-68510 is classified as a Local File Inclusion vulnerability, which is commonly linked to several web application security issues.