Vulnerabilities (CVE)

Filtered by vendor Jeweltheme Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-0327 1 Jeweltheme 1 Master Addons For Elementor 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Master Addons for Elementor WordPress plugin before 1.8.5 does not sanitise and escape the error_message parameter before outputting it back in the response of the jltma_restrict_content AJAX action, available to unauthenticated and authenticated users, leading to a Reflected Cross-Site Scripting