CVE · Medium

CVE-2023-51676 — Happy Addons for Elementor [happy-elementor-addons] < 3.10.0

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-51676 Happy Addons for Elementor [happy-elementor-addons] < 3.10.0 Server-Side Request Forgery (SSRF) Medium 4.9 < 3.10.0 3.10.0 2023-12-27

CVE-2023-51676

Happy Addons for Elementor before version 3.10.0 contains a server-side request forgery vulnerability discovered by Yuchen Ji that enables attackers to manipulate affected websites into making HTTP requests to arbitrary domains controlled by the attacker. An attacker could exploit this flaw to access sensitive information from other services operating on the same system or network. The vulnerability was resolved in version 3.10.0 and users should update their installations immediately.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.