. A WordPress plugin called “Portfolio for Elementor & Image Gallery | PowerFolio” has a security vulnerability that allows attackers to insert harmful code into pages. This can happen if the attacker has Contributor-level access or higher. The issue has been partially fixed in version 3.2.0 and fully fixed in version 3.2.1.