WordPress Miraculous Elementor Plugin Authentication Bypass Vulnerability
Vulnerability
A vulnerability allowing authentication bypass has been identified in the WordPress Miraculous Elementor plugin, specifically in versions through 2.0.7. This issue arises from authentication abuse, which could enable unauthorized users to perform actions reserved for higher-privileged users, potentially leading to admin access on the website.
Impact
Exploitation of this vulnerability could allow a malicious actor to gain administrative access to the affected WordPress site.
Remediation
Users of the WordPress Miraculous Elementor plugin should update to version 2.0.8 or later. Patchstack users can enable auto-update for vulnerable plugins.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
