CVE Database /
CVE-2023-39157
CVE · Critical
CVE-2023-39157 — JetElements For Elementor [jet-elements] < 2.6.11
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2023-39157
|
JetElements For Elementor [jet-elements] < 2.6.11 |
Improper Control of Generation of Code ('Code Injection') |
Critical
9.0
|
< 2.6.11
|
2.6.11 |
2023-08-03 |
—
|
CVE-2023-39157
Update the WordPress JetElements For Elementor plugin to the latest available version (at least 2.6.11).
Rafie Muhammad (Patchstack) discovered and reported this Remote Code Execution (RCE) vulnerability in WordPress JetElements For Elementor Plugin. This could allow a malicious actor to execute commands on the target website. This can be used to gain backdoor access to then take full control of the website. This vulnerability has been fixed in version 2.6.11.
Source:
Patchstack
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings