Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin <= 1.5.48 versions.
References
Configurations
Configuration 1 (hide)
|
History
14 Oct 2024, 13:43
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:unlimited-elements:unlimited_elements_for_elementor:*:*:*:*:*:wordpress:*:* | |
| First Time |
Unlimited-elements unlimited Elements For Elementor
|
07 Nov 2023, 03:56
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin <= 1.5.48 versions. |
03 Apr 2023, 17:36
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:unlimited-elements:unlimited_elements_for_elementor_\(free_widgets\,_addons\,_templates\):*:*:*:*:*:wordpress:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.8 |
| References | (MISC) https://patchstack.com/database/vulnerability/unlimited-elements-for-elementor/wordpress-unlimited-elements-for-elementor-plugin-1-5-48-cross-site-scripting-xss?_s_id=cve - Third Party Advisory | |
| First Time |
Unlimited-elements
Unlimited-elements unlimited Elements For Elementor \(free Widgets\, Addons\, Templates\) |
Information
Published : 2023-03-28 09:15
Updated : 2024-10-14 13:43
NVD link : CVE-2022-47170
Mitre link : CVE-2022-47170
JSON object : View
Products Affected
unlimited-elements
- unlimited_elements_for_elementor
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
