CVE-2026-87791
Path traversal vulnerability in WordPress theme design-scuole-wordpress-theme
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A path traversal vulnerability exists in the reserved_file_check function of the functions.php file in the WordPress Design Scuole Italia theme. The vulnerability allows an unauthenticated attacker to download arbitrary files accessible by the web server process.
| CWE | CWE-22 |
| Vendor | developers italia |
| Product | design-scuole-wordpress-theme |
| Published | Sep 15, 2026 |
| Last Updated | Sep 15, 2026 |
Stay Ahead of the Next One
Get instant alerts for developers italia design-scuole-wordpress-theme
Be the first to know when new unknown vulnerabilities affecting developers italia design-scuole-wordpress-theme are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
Developers Italia / design-scuole-wordpress-theme
2.6.0 ≤ 2.18.1
References
Credits
Filippo Sorbellini CSIRT-IT