The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 6.6.4 via the ajax_load_more function due to insufficient restrictions on which posts can be included. This makes it possible for unauthenticated attackers to extract data from password protected, private, or draft posts that they should not have access to.
Metrics
Affected Vendors & Products
References
History
Sat, 06 Jun 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 06 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Wpdevteam Wpdevteam essential Addons For Elementor – Popular Elementor Templates & Widgets |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Wpdevteam Wpdevteam essential Addons For Elementor – Popular Elementor Templates & Widgets |
Sat, 06 Jun 2026 03:30:00 +0000
Status: PUBLISHED
Assigner: Wordfence
Published: 2026-06-06T02:28:36.091Z
Updated: 2026-06-06T11:47:54.832Z
Reserved: 2026-05-01T19:49:55.131Z
Link: CVE-2026-7665
Updated: 2026-06-06T11:47:49.778Z
Status : Deferred
Published: 2026-06-06T04:17:40.400
Modified: 2026-06-08T14:57:14.757
Link: CVE-2026-7665
No data.