⚠️ Security update: Elementor lower than 3.19 Vulnerability Allows Attackers to Delete Files and Inject PHP Code
Hi guys, this blog update concerns a newly discovered vulnerability affecting the Elementor plugin up to version 3.19.0. The vulnerability A security vulnerability in Elementor versions up to 3.19.0 could allow attackers to delete files and inject PHP code into a website. The vulnerability is due to insufficient path validation on a parameter. Attackers can exploit this vulnerability to upload a malicious PHP file to a website. Once the file is uploaded, the attacker can execute it to delete files or inject malicious code into the website. The vulnerability was patched in Elementor version 3.19.1. If you are using Elementor, it is important to update to the latest version as soon as possible. Here are the steps on how to update Elementor: Log in to your WordPress dashboard. Navigate to Pro Radio Admin and click "Refresh license" then Install Plugins […]