Security Advisory

CVE-2026-25382

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-03-25 16:14:47
Last updated 2026-04-28 16:14:57
Assigner Patchstack
CVSS score 8.1
State PUBLISHED

Description

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in jwsthemes IdealAuto idealauto allows PHP Local File Inclusion.This issue affects IdealAuto: from n/a through < 3.8.6.