The Happy Addons plugin for Elementor on WordPress has a security vulnerability. This is because it doesn’t properly protect against harmful code that users could input into the Calendly widget. This could allow attackers with a certain level of access to add their own code to a page, which would then run whenever someone visits that page.