CVE-2024-35674: WordPress Unlimited Elements For Elementor plugin <= 1.5.109 - Broken Access Control vulnerability
Published Jun 5, 2024
·Updated
Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) unlimited-elements-for-elementor.This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through <= 1.5.109.
Affected Software
1 affected component
unlimited-elements Unlimited Elements For Elementor Wordpress<1.5.110
Remediation
Information
Update to 1.5.110 or a higher version.
Event History
Jun 5, 2024
CVE Published
via MITRE·04:19 PM
Data Sourced
via MITRE·04:19 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-35674?
CVE-2024-35674 has a high severity due to its potential for unauthorized access.
2
How do I fix CVE-2024-35674?
To fix CVE-2024-35674, update Unlimited Elements For Elementor to version 1.5.110 or later.
3
What versions are affected by CVE-2024-35674?
CVE-2024-35674 affects all versions of Unlimited Elements For Elementor prior to 1.5.110.
4
What type of vulnerability is CVE-2024-35674?
CVE-2024-35674 is a missing authorization vulnerability.
5
What can happen if CVE-2024-35674 is exploited?
Exploitation of CVE-2024-35674 could allow attackers to gain unauthorized access to the application.