A vulnerability was found in wp-with-spritz WP with Spritz Plugin 1.0 on WordPress. It has been declared as problematic . This issue affects some unknown processing of the file wp.spritz.content.filter.php of the component System Configuration Handler . Such manipulation of the argument url leads to improper control of filename for include/require statement in php program ('php remote file inclusion'). This vulnerability is uniquely identified as CVE-2018-25329 . The attack can be launched remot