Vulnerability Details CVE-2024-8516
The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.2.1 via the render() function. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract limited post information from draft and future scheduled posts.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.6%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2024-8516
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:-
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:1.0.0
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:1.0.1
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:1.9.7
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.0.0
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.0.1
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.0.3
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.0.4
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.1.2
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.1.3
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.2.0
-
cpe:2.3:a:themesflat:themesflat_addons_for_elementor:2.2.1