Headline
CVE-2023-5360
The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE.
Related news
WordPress Royal Elementor Addons And Templates Remote Shell Upload
WordPress Royal Elementor Addons and Templates plugin versions prior to 1.3.79 suffer from a remote shell upload vulnerability.
WordPress Royal Elementor 1.3.78 Shell Upload
WordPress Royal Elementor plugin versions 1.3.78 and below suffer from a remote shell upload vulnerability.