CVE-2025-58958 | ThemeMove SmilePure Plugin up to 1.8.5 on WordPress filename control
A vulnerability classified as critical was found in ThemeMove SmilePure Plugin up to 1.8.5 on WordPress. The affected element is an unknown function. Executing manipulation can lead to improper control of filename for include/require statement in php program (‘php remote file inclusion’).
The identification of this vulnerability is CVE-2025-58958. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More