CVE-2021-24262
05.05.2021, 19:15
The WooLentor WooCommerce Elementor Addons + Builder WordPress Plugin before 1.8.6 has a widget that is vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
Vendor | Product | Version |
---|---|---|
hasthemes | woolentor_-_woocommerce_elementor_addons_\+_builder | 𝑥 < 1.8.6 |
𝑥
= Vulnerable software versions
References