CVE-2026-42777HIGH NVDCVSS Score 8.1Severity HIGHPublished Oct 10, 2026Vendor unknownDescriptionUnauthenticated Local File Inclusion in Aalto <= 1.8 versions.Referenceshttps://patchstack.com/database/wordpress/theme/aalto/vulnerability/wordpress-aalto-theme-1-8-local-file-inclusion-vulnerability-2?_s_id=cve