Description
A path traversal vulnerability exists in the reserved_file_check function of the functions.php file in the WordPress Design Scuole Italia theme. The vulnerability allows an unauthenticated attacker to download arbitrary files accessible by the web server process.
Published: 2026-09-15
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized File Access
Action: Immediate Patch
AI Analysis

Impact

A path traversal flaw in the reserved_file_check function of the WordPress Design Scuole Italia theme allows an unauthenticated attacker to request and download any file that the web server can read. By manipulating URLs that invoke the vulnerable function, an attacker can obtain configuration files, database credentials, or user‑uploaded data, leading to confidential information disclosure.

Affected Systems

The flaw affects installations of the Developers Italia Design Scuole WordPress theme. Any site running this theme should upgrade to version 2.18.2 or later to eliminate the vulnerability. No specific older version numbers are listed as affected, but the presence of the reserved_file_check function implies that all releases prior to 2.18.2 are at risk.

Risk and Exploitability

The CVSS score of 8.7 indicates a high severity weakness. The EPSS score of <1% indicates a very low exploitation probability, but the vulnerability can still be exploited by simply forming a crafted URL; no user authentication is required. The flaw is not listed in CISA's KEV catalog at this time, but the evidence of unauthenticated file download strongly suggests that attackers can actively exploit it. The high potential for data exposure coupled with easy access makes this a critical risk for sites using the theme.

Generated by OpenCVE AI on September 20, 2026 at 16:44 UTC.

Remediation

Vendor Solution

Update to version 2.18.2


OpenCVE Recommended Actions

  • Apply the official update to version 2.18.2, the latest patched release of the Design Scuole Italia WordPress theme
  • Restrict file permissions on the web server to prevent the web process from reading sensitive files in addition to the removed vulnerability
  • Disable or remove the reserved_file_check function if the theme cannot be updated immediately
  • Audit web server logs for attempts to access unauthorized files and investigate any successful read attempts

Generated by OpenCVE AI on September 20, 2026 at 16:44 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Wordpress
Wordpress wordpress
Vendors & Products Wordpress
Wordpress wordpress

Tue, 15 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Description A path traversal vulnerability exists in the reserved_file_check function of the functions.php file in the WordPress Design Scuole Italia theme. The vulnerability allows an unauthenticated attacker to download arbitrary files accessible by the web server process.
Title Path traversal vulnerability in WordPress theme design-scuole-wordpress-theme
First Time appeared Developers Italia
Developers Italia design-scuole-wordpress-theme
Weaknesses CWE-22
CPEs cpe:2.3:a:developers_italia:design-scuole-wordpress-theme:*:*:*:*:*:*:*:*
Vendors & Products Developers Italia
Developers Italia design-scuole-wordpress-theme
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Developers Italia Design-scuole-wordpress-theme
Wordpress Wordpress
cve-icon MITRE

Status: PUBLISHED

Assigner: ENISA

Published:

Updated: 2026-09-15T17:31:45.818Z

Reserved: 2026-09-09T09:28:48.222Z

Link: CVE-2026-87791

cve-icon Vulnrichment

Updated: 2026-09-15T17:26:31.288Z

cve-icon NVD

Status : Deferred

Published: 2026-09-15T16:17:37.060

Modified: 2026-09-18T19:24:36.593

Link: CVE-2026-87791

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T16:45:07Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')