First published: Thu Jul 04 2024(Updated: )
The Premium Addons for Elementor plugin for WordPress is vulnerable to Regular Expression Denial of Service (ReDoS) in all versions up to, and including, 4.10.35. This is due to processing user-supplied input as a regular expression. This makes it possible for authenticated attackers, with Author-level access and above, to create and query a malicious post title, resulting in slowing server resources.
Credit: security@wordfence.com
Affected Software | Affected Version | How to fix |
---|---|---|
Leap13 Premium Addons For Elementor | <4.10.36 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.