Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.1

AncoraThemes Coworking: Malicious Files Can Be Loaded from Local Directory

CVE-2026-22367
Summary

A security issue in AncoraThemes Coworking allows hackers to load and execute local files on your website. This means that if someone gains unauthorized access, they could potentially read or modify sensitive data. You should update to the latest version of AncoraThemes Coworking as soon as possible.

Original title
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Coworking coworking allows PHP Local File Inclusion.This issue ...
Original description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Coworking coworking allows PHP Local File Inclusion.This issue affects Coworking: from n/a through <= 1.6.1.
nvd CVSS3.1 8.1
Vulnerability type
CWE-98 Improper Control of Filename for Include
Published: 20 Feb 2026 · Updated: 12 Mar 2026 · First seen: 6 Mar 2026