Input validation vulnerability in Ultimate Store Kit – Elementor powered WooCommerce Builder, 80+ Widgets and Template Builder 2.4.1

A popular plugin for WordPress called “The Ultimate Store Kit” has a security issue that can make websites vulnerable to attacks. This is because the plugin does not properly check for a special code, called a nonce, when performing certain actions. This means that someone who is not authorized to access the website can trick the site into changing important settings, potentially locking the site administrator out.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.