CVE-2026-22377 | AncoraThemes Saveo Plugin up to 1.1.2 on WordPress filename control
A vulnerability was found in AncoraThemes Saveo Plugin up to 1.1.2 on WordPress and classified as critical. Affected is an unknown function. The manipulation results in improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability was named CVE-2026-22377. The attack may be performed from remote. There is no available exploit.