Impact
The vulnerability involves the insertion of sensitive information into data sent by the Tim Strifler Exclusive Addons Elementor plugin, enabling an attacker to retrieve embedded sensitive data. This results in disclosure of confidential information stored within the plugin.
Affected Systems
The affected product is the Tim Strifler Exclusive Addons Elementor WordPress plugin through version 2.7.9.9. Any installation of the plugin at or below that version is susceptible to this flaw.
Risk and Exploitability
The CVSS score of 5.3 indicates moderate severity. The EPSS score of < 1% indicates a very low likelihood of exploitation, and the vulnerability is not listed in the CISA KEV catalog. The attack vector is not explicitly documented in the description; it is inferred that exploitation may occur through the plugin’s administrative interface or user‑initiated actions that trigger data transmission containing sensitive information.
OpenCVE Enrichment