mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-26 17:47:58 +02:00
931 B
931 B
CVE-2021-24358
Description
The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.10 did not validate a redirect parameter on a specifically crafted URL before redirecting the user to it, leading to an Open Redirect issue.
POC
Reference
- https://wpscan.com/vulnerability/fd4352ad-dae0-4404-94d1-11083cb1f44d
- https://wpscan.com/vulnerability/fd4352ad-dae0-4404-94d1-11083cb1f44d