CVE编号 | CVE-2024-10321 |
---|---|
发布日期 | 2025-03-08T08:22:55.687Z |
更新日期 | 2025-03-10T16:08:55.753Z |
状态 | PUBLISHED |
受影响的供应商 | themesgrove |
受影响的产品 | All-in-One Addons for Elementor – WidgetKit |
描述 | The All-in-One Addons for Elementor – WidgetKit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.5.4 in elements/advanced-tab/template/view.php. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, pending, and draft template data. |
参考链接: