Input validation vulnerability in Jeg Elementor Kit 2.6.4

The Jeg Elementor Kit plugin for WordPress has a security issue where attackers can insert malicious code into links on certain widgets. This can happen in any version of the plugin up to 2.6.4 and can be done by someone with contributor-level access or higher. This means that when a user clicks on a page with the malicious link, the code will run without their knowledge.

Detected in:

Jeg Elementor Kit fixed vulnerable versions: >= * <= 2.6.4
Jeg Kit for Elementor fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.