CVE-2025-53335 | ThemeREX Berger Plugin up to 1.1.1 on WordPress filename control
A vulnerability was found in ThemeREX Berger Plugin up to 1.1.1 on WordPress. It has been classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is traded as CVE-2025-53335. It is possible to initiate the attack remotely. There is no exploit available.