Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
Update the WordPress Sales Countdown Timer for WooCommerce and WordPress plugin to the latest available version (at least 1.1.9).
Workaround
No workaround given by the vendor.
Tue, 17 Mar 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 17 Mar 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in villatheme Sales Countdown Timer for WooCommerce and WordPress sctv-sales-countdown-timer allows PHP Local File Inclusion.This issue affects Sales Countdown Timer for WooCommerce and WordPress: from n/a through <= 1.1.8.1. | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in VillaTheme Sales Countdown Timer for WooCommerce and WordPress allows PHP Local File Inclusion.This issue affects Sales Countdown Timer for WooCommerce and WordPress: from n/a before 1.1.9. |
| Title | WordPress Sales Countdown Timer for WooCommerce and WordPress plugin <= 1.1.8.1 - Local File Inclusion vulnerability | WordPress Sales Countdown Timer for WooCommerce and WordPress plugin < 1.1.9 - Local File Inclusion vulnerability |
| References |
|
Fri, 20 Feb 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Villatheme
Villatheme sales Countdown Timer For Woocommerce And Wordpress Wordpress Wordpress wordpress |
|
| Vendors & Products |
Villatheme
Villatheme sales Countdown Timer For Woocommerce And Wordpress Wordpress Wordpress wordpress |
Fri, 20 Feb 2026 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Feb 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 19 Feb 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in villatheme Sales Countdown Timer for WooCommerce and WordPress sctv-sales-countdown-timer allows PHP Local File Inclusion.This issue affects Sales Countdown Timer for WooCommerce and WordPress: from n/a through <= 1.1.8.1. | |
| Title | WordPress Sales Countdown Timer for WooCommerce and WordPress plugin <= 1.1.8.1 - Local File Inclusion vulnerability | |
| Weaknesses | CWE-98 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-03-17T08:28:03.992Z
Reserved: 2026-02-17T13:23:30.505Z
Link: CVE-2026-27052
Updated: 2026-02-19T18:04:43.088Z
Status : Awaiting Analysis
Published: 2026-02-19T09:16:26.527
Modified: 2026-03-17T09:16:14.223
Link: CVE-2026-27052
No data.
OpenCVE Enrichment
Updated: 2026-02-20T10:08:06Z