GHSA-684f-44pq-4p6qCriticalCVSS 9.0
Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows...
🔗 CVE IDs covered (1)
📋 Description
Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files.
This issue affects Elementor Pro: from n/a through 4.2.1.
🔗 References (4)
- https://nvd.nist.gov/vuln/detail/CVE-2026-32475
- https://patchstack.com/articles/critical-unauthenticated-file-upload-to-rce-in-elementor-pro-plugin?_s_id=cve
- https://patchstack.com/database/wordpress/plugin/elementor-pro/vulnerability/wordpress-elementor-pro-plugin-4-2-1-arbitrary-file-upload-vulnerability?_s_id=cve
- https://github.com/advisories/GHSA-684f-44pq-4p6q