Sensitive Information Exposure in Essential Addons for Elementor by WordPress
CVE-2024-2974
5.3MEDIUM
Key Information:
- Vendor
Wordpress
- Status
- Vendor
- CVE Published:
- 9 April 2024
What is CVE-2024-2974?
The Essential Addons for Elementor plugin for WordPress is susceptible to a vulnerability that allows unauthenticated attackers to exploit the load_more function. This flaw can potentially expose sensitive information, including private and draft posts, to malicious individuals, posing a serious risk for website owners relying on the plugin for design and functionality.
Affected Version(s)
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders * <= 5.9.13