CVE-2025-60076 | jbhovik Ray Enterprise Translation Plugin up to 1.7.1 on WordPress filename control
A vulnerability classified as critical has been found in jbhovik Ray Enterprise Translation Plugin up to 1.7.1 on WordPress. Impacted is an unknown function. Performing manipulation results in improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is reported as CVE-2025-60076. The attack is possible to be carried out remotely. No exploit exists.