Vulnerabilities (CVE)

Filtered by vendor Ancorathemes Subscribe
Filtered by product Theflash
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-58888 1 Ancorathemes 1 Theflash 2026-01-16 N/A 8.2 HIGH
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes The Flash theflash allows PHP Local File Inclusion.This issue affects The Flash: from n/a through <= 1.15.