Vulnerabilities (CVE)

Filtered by vendor Ancorathemes Subscribe
Filtered by product Unitravel
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-58900 1 Ancorathemes 1 Unitravel 2026-01-20 N/A 8.1 HIGH
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes UniTravel unitravel allows PHP Local File Inclusion.This issue affects UniTravel: from n/a through <= 1.4.2.