Input validation vulnerability in Premium Addons for Elementor 4.10.31

The Premium Addons for Elementor plugin for WordPress has a security issue where attackers can inject harmful scripts into pages. This can happen when someone with certain access levels uses the plugin’s menu and shape widgets. The problem is that the plugin doesn’t properly check and protect against these types of attacks. This means that even if you have an account with contributor-level access or higher, an attacker can still insert their own scripts onto pages, which will run whenever someone visits that page.

Detected in:

Premium Addons for Elementor fixed vulnerable versions: >= * <= 4.10.31

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.