WP Clinic
Log in Sign up

CVE · Critical

CVE-2023-39157 — JetElements For Elementor [jet-elements] < 2.6.11

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-39157 JetElements For Elementor [jet-elements] < 2.6.11 Improper Control of Generation of Code ('Code Injection') Critical 9.0 < 2.6.11 2.6.11 2023-08-03

CVE-2023-39157

Update the WordPress JetElements For Elementor plugin to the latest available version (at least 2.6.11). Rafie Muhammad (Patchstack) discovered and reported this Remote Code Execution (RCE) vulnerability in WordPress JetElements For Elementor Plugin. This could allow a malicious actor to execute commands on the target website. This can be used to gain backdoor access to then take full control of the website. This vulnerability has been fixed in version 2.6.11.

Source: Patchstack

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.