CVE-2025-47531
EUVD-2025-1379907.05.2025, 15:16
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Xylus Themes XT Event Widget for Social Events xt-facebook-events allows PHP Local File Inclusion.This issue affects XT Event Widget for Social Events: from n/a through <= 1.1.7.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| xylusthemes | xt_event_widget_for_social_events | 𝑥 < 1.1.8 |
𝑥
= Vulnerable software versions