Security Advisory

CVE-2023-5360

9.8
CRITICAL

Vulnerability Description

The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE.
Published Date October 31, 2023
Official Source NIST NVD Advisory