Input validation vulnerability in PowerPack Pro for Elementor 2.9.23

The PowerPack Pro for Elementor plugin for WordPress contains a security flaw that can be exploited by unauthenticated attackers. If a user clicks on a link sent by the attacker, it may allow them to inject malicious scripts into webpages. This vulnerability affects versions of the plugin up to and including 2.9.23 as it does not properly sanitize user inputs or escape outputs. To protect against this vulnerability, users should make sure they have the most recent version of the PowerPack Pro for Elementor plugin installed, or look for an available patch from the plugin’s developers.

Detected in:

PowerPack Pro for Elementor fixed vulnerable versions: >= * <= 2.9.23

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.