Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-2974


The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 5.9.13 via the load_more function. This can allow unauthenticated attackers to extract sensitive data including private and draft posts.


Published

2024-04-09T19:15:38.817

Last Modified

2025-01-08T20:06:14.587

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-922

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application wpdeveloper essential_addons_for_elementor < 5.9.14 Yes

References