Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

PHP Files Can Be Accessed Without Permission on Biolife Websites

CVE-2026-39623
Summary

A security issue in Biolife, a theme for websites, allows unauthorized access to files on the website. This could allow attackers to view or modify sensitive information. To protect your website, update to the latest version of Biolife or remove any outdated versions.

Original title
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in kutethemes Biolife biolife allows PHP Local File Inclusion.This issue affect...
Original description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in kutethemes Biolife biolife allows PHP Local File Inclusion.This issue affects Biolife: from n/a through <= 3.2.3.
Vulnerability type
CWE-98 Improper Control of Filename for Include
Published: 8 Apr 2026 · Updated: 9 Apr 2026 · First seen: 8 Apr 2026