Input validation vulnerability in LA-Studio Element Kit for Elementor 1.4.2

The LA-Studio Element Kit for Elementor plugin used in WordPress has a security vulnerability that affects all versions up to and including 1.4.2. This vulnerability allows attackers with Contributor-level access or higher to include and run any files on the server, which could potentially lead to the execution of harmful PHP code. This could result in bypassing security measures, accessing sensitive information, or even executing code through seemingly harmless file types like images.

Detected in:

LA-Studio Element Kit for Elementor fixed vulnerable versions: >= * <= 1.4.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.