CVE-2025-64363 | SeventhQueen Kleo Plugin up to 5.5.0 on WordPress filename control (EUVD-2025-37330)
A vulnerability marked as critical has been reported in SeventhQueen Kleo Plugin up to 5.5.0 on WordPress. This affects an unknown function. Performing manipulation results in improper control of filename for include/require statement in php program (‘php remote file inclusion’).
This vulnerability is cataloged as CVE-2025-64363. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More