No analysis available yet.
Vendor Solution
Update the WordPress Tonda Theme to the latest available version (at least 2.6).
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 24 Aug 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Local File Inclusion in Tonda < 2.6 versions. | |
| Title | WordPress Tonda theme < 2.6 - Local File Inclusion vulnerability | |
| Weaknesses | CWE-98 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-08-24T12:51:09.610Z
Reserved: 2026-02-25T12:14:24.000Z
Link: CVE-2026-28151
No data.
Status : Received
Published: 2026-08-24T12:16:50.083
Modified: 2026-08-24T12:16:50.083
Link: CVE-2026-28151
No data.
OpenCVE Enrichment
No data.
-
CWE-98
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')