Access violation vulnerability in Essential Addons for Elementor 5.8.8

The Essential Addons for Elementor plugin for WordPress has a security issue in versions up to and including 5.8.8. If someone has access to the Elementor page builder, they can create a new registration form that sets the user role to administrator. This makes it possible for them to register as an administrative user and gain more control over the website. It’s difficult to exploit this issue without the ability to publish changes, and it looks like this was a mistake made by the developers, as an identical issue was fixed in version 4.6.5.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.