DevSecOps Toolkit

CVE record

CVE-2025-68065

HIGHCVSS 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in LiquidThemes Hub Core allows PHP Local File Inclusion. This issue affects Hub Core: from n/a before 6.0.2.

Vulnerability metadata

Published
2025-12-16T03:46:01.743Z
Modified
2026-05-20T04:46:26.137Z
EPSS
Not available
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

References