Input validation vulnerability in Extender All In One For Elementor 1.0.3

The Extender All In One For Elementor plugin, which is used for WordPress websites, has a security issue. This issue, known as Stored Cross-Site Scripting, affects versions 1.0.3 and below. The problem is that the plugin does not properly clean up user input and output, allowing attackers with certain levels of access to insert harmful code into pages. This code will then run whenever someone visits the affected page.

Detected in:

Extender All In One For Elementor open vulnerable versions: >= * <= 1.0.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.