Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nK Visual Portfolio, Photo Gallery & Post Grid visual-portfolio allows PHP Local File Inclusion.This issue affects Visual Portfolio, Photo Gallery & Post Grid: from n/a through <= 3.5.1.
Metrics
Affected Vendors & Products
References
History
Thu, 26 Mar 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Visualportfolio
Visualportfolio visual Portfolio, Photo Gallery & Post Grid Wordpress Wordpress wordpress |
|
| Vendors & Products |
Visualportfolio
Visualportfolio visual Portfolio, Photo Gallery & Post Grid Wordpress Wordpress wordpress |
Wed, 25 Mar 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 25 Mar 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nK Visual Portfolio, Photo Gallery & Post Grid visual-portfolio allows PHP Local File Inclusion.This issue affects Visual Portfolio, Photo Gallery & Post Grid: from n/a through <= 3.5.1. | |
| Title | WordPress Visual Portfolio, Photo Gallery & Post Grid plugin <= 3.5.1 - Local File Inclusion vulnerability | |
| Weaknesses | CWE-98 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2026-03-25T16:15:10.746Z
Updated: 2026-03-25T20:08:46.372Z
Reserved: 2026-03-12T11:12:24.777Z
Link: CVE-2026-32537
Updated: 2026-03-25T20:08:31.940Z
Status : Received
Published: 2026-03-25T17:17:07.427
Modified: 2026-03-25T21:16:46.153
Link: CVE-2026-32537
No data.