Untriaged
Permalink
CVE-2025-49254
8.1 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): HIGH
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
WordPress Nika <= 1.2.8 - Local File Inclusion Vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in thembay Nika allows PHP Local File Inclusion. This issue affects Nika: from n/a through 1.2.8.
References
Affected products
nika
- =<1.2.8
Matching in nixpkgs
pkgs.nika-fonts
Persian/Arabic Open Source Font
-
nixos-unstable -
- nixpkgs-unstable 1.0.0
pkgs.python312Packages.minikanren
Relational programming in Python
-
nixos-unstable -
- nixpkgs-unstable 1.0.5
pkgs.python313Packages.minikanren
Relational programming in Python
-
nixos-unstable -
- nixpkgs-unstable 1.0.5
Package maintainers
-
@Etjean Etienne Jean <et.jean@outlook.fr>