WordPress UltraAddons Elementor Lite plugin <= 2.0.2 - Cross Site Scripting (XSS) vulnerability
UltraAddons for Elementor
Minimum safe version
1.1.9
Update to 1.1.9 or later to address 5 fixable vulnerabilities
WordPress UltraAddons – Elementor Addons plugin <= 2.0.2 - Cross Site Request Forgery (CSRF) vulnerability
CVE-2024-10696
WordPress UltraAddons – Elementor Addons plugin <= 2.0.2 - Cross Site Scripting (XSS) vulnerability
CVE-2024-4866
WordPress UltraAddons plugin <= 2.0.2 - Cross Site Scripting (XSS) vulnerability
WordPress UltraAddons Elementor Lite (Header & Footer Builder, Menu Builder, Cart Icon, Shortcode) Plugin <= 1.0.9 is vulnerable to Cross Site Scripting (XSS)
WordPress UltraAddons Elementor Lite plugin <= 1.1.0 - Sensitive Information Disclosure vulnerability
WordPress UltraAddons Elementor Lite plugin <= 1.1.0 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability