Input validation vulnerability in The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce 5.5.4

The Plus Addons for Elementor is a plugin used in WordPress that has a security issue. This issue allows malicious code to be injected into web pages created using the plugin, which can be accessed by anyone who visits those pages. This vulnerability exists in all versions of the plugin up to 5.5.4 and is caused by a lack of proper protection for user-provided information. This means that someone with at least contributor-level access to the website can insert harmful scripts that will run whenever someone visits the affected pages.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.