CVE-2024-13362
Music Player for Elementor – Audio Player & Podcast Player
Minimum safe version
2.4.7
Update to 2.4.7 or later to address 8 fixable vulnerabilities
WordPress Music Player for Elementor – Audio Player & Podcast Player Plugin <= 2.4.6 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-10582
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Music Player for Elementor – Audio Player & Podcast Player Plugin < 1.5.9.9 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Music Player for Elementor – Audio Player & Podcast Player plugin < 1.5.5 - Sensitive Information Disclosure vulnerability
WordPress Music Player for Elementor – Audio Player & Podcast Player plugin < 1.5.5 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability