CVE-2024-2966 Information
Apr 12, 2024
cve
Description
The Element Pack Elementor Addons (Header Footer Template Library Dynamic Grid & Carousel Remote Arrows) plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to and including 5.5.6 via the element_pack_ajax_search function. This makes it possible for unauthenticated attackers to extract sensitive data including password protected post details.
Reference
https://www.wordfence.com/threat-intel/vulnerabilities/id/39e0fd33-4071-4510-a7d5-b499a8a3543c?source=cve https://plugins.trac.wordpress.org/changeset/3066178/bdthemes-element-pack-lite
Share on: