WhisperX tag archive

#LFI Vulnerability

This page collects WhisperX intelligence signals tagged #LFI Vulnerability. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-15 13:23:00 · GitHub Issues

1. HUSKY Products Filter Plugin Exposed: CVE-2025-1661 LFI Vulnerability Targets WooCommerce Sites

A critical, unauthenticated Local File Inclusion (LFI) vulnerability has been publicly documented for the HUSKY Products Filter Professional plugin for WooCommerce, designated as CVE-2025-1661. The flaw allows attackers to directly target WordPress sites by sending a malicious POST request to the `/wp-admin/admin-ajax....