Madara WordPress theme <= 2.2.2 contains a local file inclusion vulnerability caused by improper sanitization of the 'template' parameter, letting unauthenticated attackers execute arbitrary files on the server, exploit requires crafted request.
id: CVE-2025-4524
info:
name: WordPress Madara Theme < 2.2.2.1 - Local File Inclusion
author: 0
...