WP Clinic
Entrar Registrarse

CVE · High

CVE-2023-48759 — JetElements For Elementor [jet-elements] < 2.6.13.1

CVE Vulnerabilidad Tipo Gravedad Afectadas Corregido en Publicado Estado
CVE-2023-48759 JetElements For Elementor [jet-elements] < 2.6.13.1 Falta de control de autorización Alta 7,5 < 2.6.13.1 2.6.13.1 2023-11-28

CVE-2023-48759

Update the WordPress JetElements For Elementor plugin to the latest available version (at least 2.6.13.1). Rafie Muhammad (Patchstack) discovered and reported this Arbitrary File Download vulnerability in WordPress JetElements For Elementor Plugin. This could allow a malicious actor to download any file from your website. This includes but is not limited to files that contain login credentials or backup files. This vulnerability has been fixed in version 2.6.13.1.

Descripción técnica mostrada en el idioma original de la fuente (inglés).

Fuente: Patchstack

Escanea tu sitio WordPress gratis

Sin registro, sin tarjeta de crédito — ingresa tu URL y obtén un informe de seguridad en segundos.