CVE-2025-24618
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2025-24618 is a newly identified vulnerability affecting the ElementInvader Addons for Elementor. This issue involves a missing authorization control, allowing unauthorized access to certain functionalities. Incorrectly configured access control security levels have been identified as the root cause. The vulnerability affects ElementInvader Addons for Elementor, with versions from n/a through 1.3.1 being potentially impacted. Successful exploitation could lead to significant security implications. Users are advised to update their addons as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- WordPress