CVE-2026-39537HIGH NVDCVSS Score 8.1Severity HIGHPublished Jun 17, 2026Vendor unknownDescriptionUnauthenticated Local File Inclusion in Mikado Core <= 1.6 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/mikado-core/vulnerability/wordpress-mikado-core-plugin-1-6-local-file-inclusion-vulnerability-2?_s_id=cve