Absolute Path Traversal vulnerability in AP Page Builder versions prior to 4.0.0 could allow an unauthenticated remote user to modify the 'product_item_path' within the 'config' JSON file, allowing them to read any file on the system.
| Software | From | Fixed in |
|---|---|---|
| apollotheme / ap_pagebuilder | - | 4.0.0 |