PatchSiren

LiquidThemes CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH LiquidThemes CVE published 2025-12-16

CVE-2025-68065

CVE-2025-68065 is a high-severity PHP local file inclusion issue in Hub Core, affecting versions before 6.0.2. The published record describes improper control of a filename used in an include/require path, with NVD classifying the weakness as CWE-98. Site owners should treat this as a serious exposure risk for unpatched WordPress installations running the plugin.