A stored XSS vulnerability exists in the Custom Link Attributes control Affect function in Elementor Page Builder 2.9.2 and earlier versions. It is caused by inadequate filtering on the link custom attributes.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://wordpress.org/plugins/elementor/#developers |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-09-16T19:59:53
Updated: 2024-08-04T14:22:24.890Z
Reserved: 2020-08-13T00:00:00
Link: CVE-2020-20406
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-09-16T20:15:13.897
Modified: 2024-11-21T05:12:03.483
Link: CVE-2020-20406
Redhat
No data.