Elementor, a popular page builder that works as a WordPress system plugin, could expose its users to a security vulnerability that could allow malicious people to access privileges and even take full control of the website. The flaw was reported by researchers at the Patchstack security solution..

Considered one of the leading website building platforms in the WordPress ecosystem, Elementor makes it possible to build complex pages without coding. using ready-made templates or from scratch and simply drag and drop content. The speed of changes visible in real time has allowed the tool to reach more than one million active users.

According to technology research firm W3Techs, over 43% of all websites on the internet currently use WordPress. Elementor Blog says that over 12 million people use the page builder. This corresponds to 8% of global website traffic, According to W3Techs.

What is Elementor vulnerability?

As explained by Patchstack, the vulnerability appears in the password reset function. “does not verify the password reset key, instead it directly changes the password of the given user”contains the administrator account. This means that the entire site, including the backend, is exposed, and if a target site is hiding user information, a potential hacker “has access and control over it as well.”

Naturally, as soon as the Patchstack Red Team discovered this vulnerability, it was immediately patched and all Essential Addons for Elementor users were asked to upgrade to the currently available version 5.7.2.

Since all previous plugin versions since 5.4.0 are affected by the crash, the recommendation is: update your plugin as soon as possible.

Source: Tec Mundo

Previous articleWhatsApp now blocks conversations with passwords and biometrics; know how to use
Next articleAll the rumors about watchOS 10, one of the most important software updates of the year
I am a passionate and hardworking journalist with an eye for detail. I specialize in the field of news reporting, and have been writing for Gadget Onus, a renowned online news site, since 2019. As the author of their Hot News section, I’m proud to be at the forefront of today’s headlines and current affairs.

LEAVE A REPLY

Please enter your comment!
Please enter your name here