Unauthenticated Broken Access Control in LA-Studio Element Kit for Elementor
CVE-2026-65489
5.3MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 23 July 2026
What is CVE-2026-65489?
The vulnerability in LA-Studio Element Kit for Elementor allows unauthenticated users to bypass access control protections, potentially leading to unauthorized actions and data exposure. This issue affects versions up to 1.6.2, making it critical for users to apply security patches promptly to safeguard their websites.
Affected Version(s)
LA-Studio Element Kit for Elementor <= 1.6.2