Input validation vulnerability in Unlimited Elements For Elementor (Free Widgets, Addons, Templates) 1.5.112

The plugin called Unlimited Elements For Elementor, which is used for adding widgets, addons, and templates on WordPress, has a security issue. This vulnerability is called Stored Cross-Site Scripting and it affects all versions of the plugin up to 1.5.112. This means that attackers who are logged in and have Contributor-level access or higher, and have been given permission to edit plugin settings by an administrator, can add harmful code to web pages that will run whenever someone visits that page.

Detected in:

Unlimited Elements For Elementor (Free Widgets, Addons, Templates) fixed vulnerable versions: >= * <= 1.5.112

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.