CVE · Medium

CVE-2024-0512 — Royal Addons for Elementor – Addons and Templates Kit for Elementor [royal-elementor-addons] < 1.3.88

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-0512 Royal Addons for Elementor – Addons and Templates Kit for Elementor [royal-elementor-addons] < 1.3.88 Cross-Site Request Forgery (CSRF) Medium 4.3 < 1.3.88 1.3.88 2024-02-07

CVE-2024-0512

The Royal Addons for Elementor plugin contained a cross-site request forgery flaw that could permit attackers to trick authenticated users with elevated permissions into performing unintended actions on their behalf. Francesco Carlucci identified and disclosed this security issue, which affects all versions prior to 1.3.88. The vulnerability was resolved in version 1.3.88 and later.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.