Description
WordPress Plugin The Plus Addons for Elementor is prone to an open redirect vulnerability because the application fails to properly verify user-supplied input. Exploiting this issue may allow attackers to redirect users to arbitrary web sites and conduct phishing attacks; other attacks are also possible. WordPress Plugin The Plus Addons for Elementor version 4.1.9 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.1.10 or latest
References
Related Vulnerabilities
Internet Information Services Improper Input Validation Vulnerability (CVE-2000-0258)
WordPress Multiple Cross-Site Scripting Vulnerabilities (2.0 - 2.0.1)
WordPress Plugin All Category SEO Updater Cross-Site Scripting (0.2.7)
Python Cryptographic Issues Vulnerability (CVE-2012-1150)
WordPress Plugin Revamp CRM for WooCommerce Local File Inclusion (1.0.3)