Input validation vulnerability in Events Addon for Elementor 2.1.4

The Events Addon for Elementor is a plugin used on WordPress websites. It has a security issue called Stored Cross-Site Scripting, which allows hackers to add harmful code to the Basic Slider, Upcoming Events, and Schedule widgets. This can affect all versions of the plugin up to 2.1.4. This vulnerability happens because the plugin does not properly clean and protect user-entered information, making it possible for attackers to add their own code to pages and harm users who visit those pages.

Detected in:

Events Addon for Elementor open vulnerable versions: >= * <= 2.1.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.