This issue affects WaveRide: from n/a through 1.4.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress WaveRide Theme to the latest available version (at least 1.5).
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Select-themes
Select-themes waveride Wordpress Wordpress wordpress |
|
| Vendors & Products |
Select-themes
Select-themes waveride Wordpress Wordpress wordpress |
Tue, 02 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 02 Jun 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes WaveRide allows PHP Local File Inclusion. This issue affects WaveRide: from n/a through 1.4. | |
| Title | WordPress WaveRide theme <= 1.4 - Local File Inclusion vulnerability | |
| Weaknesses | CWE-98 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-02T14:45:37.674Z
Reserved: 2026-04-07T10:48:26.892Z
Link: CVE-2026-39553
Updated: 2026-06-02T14:45:34.281Z
Status : Deferred
Published: 2026-06-02T14:16:52.217
Modified: 2026-06-02T14:43:49.920
Link: CVE-2026-39553
No data.
OpenCVE Enrichment
Updated: 2026-06-02T20:51:21Z