CVE · Medium

CVE-2026-49053 — ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor [elementskit-lite] < 3.9.7

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-49053 ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor [elementskit-lite] < 3.9.7 Missing Authorization Medium 5.3 < 3.9.7 3.9.7 2026-05-27

CVE-2026-49053

The ElementsKit Elementor Addons plugin has a security flaw that allows unverified users to execute an unauthorized operation due to the absence of capability verification on a specific function in versions prior to and including 3.9.6, potentially leading to unauthorized access. This vulnerability can be exploited by attackers who are not authenticated.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.