Input validation vulnerability in Elementor Addon Elements 1.12.7

The Elementor Addon Elements plugin for WordPress has an issue in versions up to and including 1.12.7. This issue makes it possible for attackers to make changes to the plugin’s settings without being authenticated. This could happen if the attacker is able to convince a site administrator to click on a link. To fix this issue, an update is needed to make sure that nonce validation is in place.

Detected in:

Elementor Addon Elements fixed vulnerable versions: >= * <= 1.12.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.