Input validation vulnerability in Sparkle Elementor Kit 2.0.9

The Sparkle Elementor Kit plugin for WordPress has a security issue in versions up to 2.0.9. This allows attackers with contributor-level access or higher to access and run any files on the server, including PHP code. This can be used to get around security measures, access private information, or execute code even if only “safe” file types, like images, are supposed to be allowed.

Detected in:

Sparkle Elementor Kit open vulnerable versions: >= * <= 2.0.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.