Input validation vulnerability in Unlimited Elements For Elementor (Free Widgets, Addons, Templates) 1.5.66

The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) for WordPress is vulnerable to potential security threats. In versions up to, and including, 1.5.66, the File Manager functionality does not properly validate the type of files that are included in zip files. This means that people with contributor-level permissions or higher could upload malicious files onto the server of the affected site, potentially leading to remote code execution.

Detected in:

Unlimited Elements For Elementor (Free Widgets, Addons, Templates) fixed vulnerable versions: >= * <= 1.5.66

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.