CVE-2026-65502: WordPress Element Pack Elementor Addons plugin <= 8.7.13 - Captcha Bypass vulnerability
Published Aug 6, 2026
·Updated
Unauthenticated Bypass Vulnerability in Element Pack Elementor Addons <= 8.7.13 versions.
Affected Software
1 affected component
Element Pack Elementor Addons<=8.7.13
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Element Pack Elementor Addons Pluginto a version that resolves this vulnerability.Fixed in 8.7.14
Event History
Aug 6, 2026
CVE Published
via MITRE·02:27 PM
Data Sourced
via MITRE·02:27 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-65502?
The severity of CVE-2026-65502 is medium with a CVSS score of 5.3.
2
What type of vulnerability is CVE-2026-65502?
CVE-2026-65502 is an unauthenticated bypass vulnerability affecting the Element Pack Elementor Addons plugin.
3
How can I fix CVE-2026-65502?
To fix CVE-2026-65502, update the Element Pack Elementor Addons plugin to a version greater than 8.7.13.
4
Who is affected by CVE-2026-65502?
Users of the Element Pack Elementor Addons plugin version 8.7.13 or lower are affected by CVE-2026-65502.
5
What is the impact of CVE-2026-65502?
CVE-2026-65502 allows attackers to bypass CAPTCHA protections in the Element Pack Elementor Addons plugin.