CVE-2025-58214 | gavias Indutri Plugin up to 1.2.x on WordPress filename control
A vulnerability, which was classified as problematic, has been found in gavias Indutri Plugin up to 1.2.x on WordPress. The affected element is an unknown function. Performing manipulation results in improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is identified as CVE-2025-58214. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.