Input validation vulnerability in RomethemeKit For Elementor 1.5.0

The RomethemeKit For Elementor plugin on WordPress has a security issue called Stored Cross-Site Scripting. This means that certain input and output in the plugin were not properly checked, allowing attackers to insert harmful web scripts into pages. This could be done by someone with contributor-level access or higher, and the scripts would run whenever a user visits the affected page.

Detected in:

RTMKit fixed vulnerable versions:
RTMKit Addons for Elementor fixed vulnerable versions: >= * <= 1.5.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.