Vulnerabilities (CVE)

Filtered by vendor Thememove Subscribe
Filtered by product Moody
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-22707 1 Thememove 1 Moody 2026-01-27 N/A 9.8 CRITICAL
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Moody tm-moody allows PHP Local File Inclusion.This issue affects Moody: from n/a through <= 2.7.3.