Description
The Elementor Page Builder plugin before 2.9.9 for WordPress suffers from a stored XSS vulnerability. An author user can create posts that result in a stored XSS by using a crafted payload in custom links.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-6075 | The Elementor Page Builder plugin before 2.9.9 for WordPress suffers from a stored XSS vulnerability. An author user can create posts that result in a stored XSS by using a crafted payload in custom links. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T12:32:13.872Z
Reserved: 2020-06-04T00:00:00.000Z
Link: CVE-2020-13864
No data.
Status : Modified
Published: 2020-06-05T22:15:12.070
Modified: 2024-11-21T05:02:01.993
Link: CVE-2020-13864
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD