cleantalk
Vulnerabilities and Security Researches

WP Multilang, CVE-2025-49307

CVE, Research URL

CVE-2025-49307

Application

WP Multilang

Published on
Jun 06, 2025
Research Description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Magazine3 WP Multilang allows PHP Local File Inclusion. This issue affects WP Multilang: from n/a through 2.4.19.
Affected versions
Min -, max 2.4.19.1.
Status
vulnerable