An issue exists in the Elementor plugin up to and including 2.9.13 for WordPress. An authenticated attacker can achieve stored XSS via the Name Your Template field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
elementor website builder |