Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Solwin Blog Designer PRO.This issue affects Blog Designer PRO: from n/a through 3.4.7.CreditsBonds (Patchstack Bug Bounty Program)Referenceshttps://patchstack.com/database/wordpress/plugin/blog-designer-pro/vulnerability/wordpress-blog-designer-pro-plugin-3-4-7-unauthenticated-non-arbitrary-local-file-inclusion-vulnerability?_s_id=cve