Input validation vulnerability in Ultimate Addons for Elementor (Formerly Elementor Header & Footer Builder) 2.4.9

A popular plugin for WordPress, called the Ultimate Addons for Elementor, has a security issue that allows hackers to inject harmful code into web pages. This happens when an attacker uploads a specific type of file, called an SVG file, and can affect all versions of the plugin up to version 2.4.9. This vulnerability can only be exploited by users with certain levels of access, but it is still a serious concern.

Detected in:

Ultimate Addons for Elementor fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.