CVE-2025-60241 | Premmerce Plugin up to 1.3.19 on WordPress filename control
A vulnerability marked as critical has been reported in Premmerce Plugin up to 1.3.19 on WordPress. This affects an unknown part. Performing manipulation results in improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is reported as CVE-2025-60241. The attack is possible to be carried out remotely. No exploit exists.