CVE-2026-27081: WordPress Rosebud theme <= 1.4 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Rosebud rosebud allows PHP Local File Inclusion.This issue affects Rosebud: from n/a through <= 1.4.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-27081?
The severity of CVE-2026-27081 is classified as high due to its potential exploitation via Local File Inclusion.
How do I fix CVE-2026-27081?
To fix CVE-2026-27081, update the WordPress Rosebud theme to version 1.5 or later.
What type of vulnerability is CVE-2026-27081?
CVE-2026-27081 is a Local File Inclusion vulnerability that allows attackers to access local files on the server.
Who is affected by CVE-2026-27081?
Users of the Mikado-Themes WordPress Rosebud theme version 1.4 or earlier are affected by CVE-2026-27081.
Can CVE-2026-27081 lead to remote code execution?
CVE-2026-27081 can potentially lead to remote code execution if an attacker exploits the Local File Inclusion vulnerability successfully.