GHSA-j943-8rcj-jvf4HighCVSS 7.2
The Animation Addons for Elementor WordPress plugin before 2.7.2 does not validate a user...
🔗 CVE IDs covered (1)
📋 Description
The Animation Addons for Elementor WordPress plugin before 2.7.2 does not validate a user-supplied value before using it to build the host of a server-side HTTP request, allowing unauthenticated users to make the site issue requests to internal hosts and read the responses back.