CVE-2025-68494: WordPress Premium Addons for Elementor plugin <= 4.11.53 - Sensitive Data Exposure vulnerability
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Leap13 Premium Addons for Elementor premium-addons-for-elementor allows Retrieve Embedded Sensitive Data.This issue affects Premium Addons for Elementor: from n/a through <= 4.11.53.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-68494?
The severity of CVE-2025-68494 is considered high due to its potential to expose sensitive system information.
How do I fix CVE-2025-68494?
To fix CVE-2025-68494, upgrade Premium Addons for Elementor to the latest version above 4.11.53.
What types of sensitive data are affected by CVE-2025-68494?
CVE-2025-68494 allows unauthorized retrieval of embedded sensitive data such as configuration and user information.
Which versions of Premium Addons for Elementor are vulnerable to CVE-2025-68494?
Versions of Premium Addons for Elementor from n/a up to and including 4.11.53 are vulnerable to CVE-2025-68494.
Who is affected by CVE-2025-68494?
Any user or administrator running a vulnerable version of Premium Addons for Elementor is affected by CVE-2025-68494.