PT-2024-24806 · Elementor · Elementor

Majed Refaea

·

Published

2024-04-24

·

Updated

2025-01-21

·

CVE-2024-32718

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions The Pack Elementor versions through 2.0.8.2
Description A Server-Side Request Forgery (SSRF) issue has been identified. This allows an attacker to trick the server into making requests to arbitrary domains, potentially leading to unauthorized access to sensitive data or systems.
Recommendations For versions through 2.0.8.2, update to a version later than 2.0.8.2 to resolve the issue.

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-32718

Affected Products

Elementor