Input validation vulnerability in Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) 5.6.0

The Element Pack Elementor Addons plugin for WordPress has a security vulnerability that allows attackers to inject malicious scripts into pages. This can be done through the ‘tab_link’ attribute of the Panel Slider widget and affects all versions up to 5.6.0. It is possible for authenticated attackers with contributor-level access or higher to exploit this vulnerability, which could lead to unauthorized execution of these scripts when a user visits the affected page. This issue has been identified as CVE-2024-32572 and may also be related to CVE-2024-1426.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.