CVE-2021-24256
EUVD-2021-1117005.05.2021, 19:15
The “Elementor – Header, Footer & Blocks Template” WordPress Plugin before 1.5.8 has two widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| brainstormforce | elementor_-_header\,_footer_\&_blocks_template | 𝑥 < 1.5.8 |
𝑥
= Vulnerable software versions
References