PT-2025-52201 · Elementor · Ultimate Member Widgets For Elementor
Mdr
·
Published
2025-12-18
·
Updated
2025-12-18
·
CVE-2025-66116
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Ultimate Member Widgets for Elementor versions prior to 2.3
Description
A flaw exists in UserElements Ultimate Member Widgets for Elementor that allows the retrieval of embedded sensitive data due to the insertion of sensitive information into sent data.
Recommendations
Update Ultimate Member Widgets for Elementor to a version later than 2.3.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ultimate Member Widgets For Elementor