First published: Tue Oct 15 2024(Updated: )
The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Basic Information Exposure in all versions up to, and including, 3.23.5 via the get_image_alt function. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract either excerpt data or titles of private or password-protected posts.
Credit: security@wordfence.com
Affected Software | Affected Version | How to fix |
---|---|---|
Elementor Website Builder WordPress | <3.24.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.