CVE-2026-27048 | Elated-Themes The Aisle Core Plugin up to 2.0.5 on WordPress filename control
A vulnerability, which was classified as critical, has been found in Elated-Themes The Aisle Core Plugin up to 2.0.5 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is referenced as CVE-2026-27048. Remote exploitation of the attack is possible. No exploit is available.