CVE-2026-34895: WordPress Softlab Core plugin < 1.2.11 - Local File Inclusion vulnerability
Published Jun 16, 2026
·Updated
Unauthenticated Local File Inclusion in Softlab Core < 1.2.11 versions.
Affected Software
1 affected component
Softlab Softlab Core<1.2.11
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Softlab Core Pluginto a version that resolves this vulnerability.Fixed in 1.2.11
Event History
Jun 16, 2026
CVE Published
via MITRE·08:57 PM
Data Sourced
via MITRE·08:57 PM
RemedyDescriptionSeverityWeakness
Jun 17, 2026
Data Sourced
via NVD·01:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-34895?
CVE-2026-34895 has a severity rating of 8.1, classified as high.
2
What does CVE-2026-34895 exploit?
CVE-2026-34895 exploits a Local File Inclusion vulnerability in the Softlab Core plugin versions prior to 1.2.11.
3
How do I fix CVE-2026-34895?
To fix CVE-2026-34895, update the Softlab Core plugin to version 1.2.11 or later.
4
What impact does CVE-2026-34895 have on my WordPress site?
CVE-2026-34895 can lead to unauthorized access to sensitive files on your server.
5
Is authentication required to exploit CVE-2026-34895?
No, authentication is not required to exploit CVE-2026-34895 as it is an unauthenticated vulnerability.