Input validation vulnerability in Avada | Website Builder For WordPress & WooCommerce 7.11.1

The Avada theme for WordPress has a security vulnerability in versions up to 7.11.1. This vulnerability can be exploited by attackers with contributor privileges to make web requests to any external location from the web application. This means they can query and change information from services within the system.

Detected in:

Avada | Website Builder For WordPress & WooCommerce fixed vulnerable versions: >= * <= 7.11.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.