cleantalk
Vulnerabilities and Security Researches

Elementor Addons by Livemesh, CVE-2021-24260

CVE, Research URL

CVE-2021-24260

Published on
May 06, 2021
Research Description
The “Livemesh Addons for Elementor” WordPress Plugin before 6.8 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
Affected versions
max 2.6.
Status
vulnerable