The Happy Elementor Addons Pro plugin for WordPress has a security vulnerability that could allow an unauthenticated attacker to inject malicious web scripts into pages if they can successfully trick a user into taking an action like clicking on a link. This vulnerability affects versions of the plugin up to and including 2.8.0, due to a lack of input sanitization and output escaping.