7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in G5Theme Handmade Framework allows PHP Local File Inclusion.This issue affects Handmade Framework: from n/a through 3.9.
Basic Information
ID
CVE-2026-22521
Source
Patchstack
Published
Jan 8, 2026 at 16:18
Affected Product
Vendor
G5Theme
Product
Handmade Framework
Version
n/a
Affected Versions
G5Theme Handmade Framework n/a