CVE-2024-8801
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Sep 25, 2024
Updated: Sep 30, 2024
CWE ID 200
Summary
CVE-2024-8801 is a vulnerability affecting the Happy Addons for Elementor plugin used in WordPress websites. This issue, present in versions up to 3.12.2, permits authenticated attackers with Contributor-level access or higher to obtain sensitive information through the Content Switcher widget. Exposed data includes private, draft, and pending Elementor templates, posing a significant risk to website security.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- weDevs