CVE

CVE-2025-5340 — Music Player for Elementor < 2.4.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via album_buy_url Parameter

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-5340 Music Player for Elementor < 2.4.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via album_buy_url Parameter Unknown < 2.4.7 2.4.7

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.