CVE-2024-56225: WordPress Premium Addons for Elementor plugin <= 4.10.56 - Broken Access Control vulnerability
Missing Authorization vulnerability in Leap13 Premium Addons for Elementor premium-addons-for-elementor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Premium Addons for Elementor: from n/a through <= 4.10.56.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-56225?
CVE-2024-56225 has a medium severity rating due to the potential for unauthorized access to restricted functionalities.
How do I fix CVE-2024-56225?
To mitigate CVE-2024-56225, update the Leap13 Premium Addons for Elementor to version 4.10.57 or later.
What types of vulnerabilities are described in CVE-2024-56225?
CVE-2024-56225 describes a missing authorization vulnerability that allows access to functionality not properly constrained by access control lists (ACLs).
Which versions of Premium Addons for Elementor are affected by CVE-2024-56225?
CVE-2024-56225 affects Premium Addons for Elementor versions up to and including 4.10.56.
Is this vulnerability specific to a particular platform?
CVE-2024-56225 affects the Leap13 Premium Addons for Elementor plugin used on WordPress sites.