CVE-2026-22434 | AncoraThemes Crown Art Plugin up to 1.2.11 on WordPress filename control
A vulnerability identified as critical has been detected in AncoraThemes Crown Art Plugin up to 1.2.11 on WordPress. This vulnerability affects unknown code. Performing a manipulation results in improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is known as CVE-2026-22434. Remote exploitation of the attack is possible. No exploit is available.