PT-2026-40583 · WordPress · Avada Builder
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Avada Builder versions prior to 3.15.3
Description
An arbitrary file read issue exists in the Avada Builder plugin for WordPress. Authenticated attackers with Subscriber-level access or higher can read arbitrary files on the server, potentially exposing sensitive information. This is possible through the
fusion get svg from file() function using the custom svg parameter within the 'fusion section separator' shortcode.Recommendations
Update to version 3.15.3.
As a temporary workaround, restrict access to the
fusion get svg from file() function or the custom svg parameter in the 'fusion section separator' shortcode.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Avada Builder