CVE-2024-10319

Published Nov 5, 2024

Last updated 9 days ago

Overview

Description
The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.6 via the render function in widgets/content-toggle/layout/frontend.php. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, pending, and draft template data.
Source
security@wordfence.com
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
4.3
Impact score
1.4
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Severity
MEDIUM

Weaknesses

nvd@nist.gov
NVD-CWE-noinfo
security@wordfence.com
CWE-200

Social media

Hype score
Not currently trending
  1. 🚨 CVE-2024-10319 (Published: 2024-11-05) - A high-severity vulnerability in Wordfence (Defiant Inc.) affects multiple versions. Users are urged to update to the latest version immediately to mitigate risks. Stay secure! More info: https://t.co/nTpW7dtWtw #CyberSecurity… https://

    @transilienceai

    7 Nov 2024

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 🚨 CVE-2024-10319 (Published: 2024-11-05) - A high-severity vulnerability affects Xpro Elementor Addons. Ensure you're using the latest version to mitigate risks. Check the changeset for details: https://t.co/2UpIMjpHHj. Stay secure! 🔒 #WordPress #CVE

    @transilienceai

    7 Nov 2024

    41 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2024-10319 (Published: 2024-11-05) - A high-severity vulnerability affects Xpro Elementor Addons. Ensure you’re using the latest version to mitigate risks. Check the details and remediation steps here: https://t.co/2UpIMjpHHj #CyberSecurity #WordPress

    @transilienceai

    7 Nov 2024

    29 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨 CVE-2024-10319 (Published: 2024-11-05) - A high-severity vulnerability affects Xpro Elementor Addons. Ensure your version is updated to the latest release to mitigate risks. Check the changeset for details: https://t.co/2UpIMjpHHj. Stay secure! 🔒 #WordPress #CVE

    @transilienceai

    7 Nov 2024

    33 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 CVE-2024-10319 (Published: 2024-11-05) - A high-severity vulnerability affects Xpro Elementor Addons. Ensure your product is updated to the latest version to mitigate risks. Check the changeset for details: https://t.co/2UpIMjpHHj. Stay secure! 🔒 #WordPress #CVE

    @transilienceai

    7 Nov 2024

    29 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 CVE-2024-10319 (Published: 2024-11-05) - A high-severity vulnerability in Xpro Elementor Addons affects multiple versions. Users are urged to update to the latest version immediately to mitigate risks. Stay secure! 🔒 More info: https://t.co/2UpIMjpHHj #CyberSecurity… https://

    @transilienceai

    7 Nov 2024

    28 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. 🚨 CVE-2024-10319 (Published: 2024-11-05) - A high-severity vulnerability in Xpro Elementor Addons affects multiple versions. Users are urged to update to the latest version immediately to mitigate risks. For more details, check the changeset: https://t.co/2UpIMjpHHj… https://t.c

    @transilienceai

    7 Nov 2024

    19 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. 🚨 CVE-2024-10319 (Published: 2024-11-05) - High severity vulnerability in Xpro Elementor Addons. Affects specific versions. 🛠️ Remediation is crucial! Update to the latest version to secure your site. For details, check the changeset: https://t.co/2UpIMjpHHj #WordPress #Securit

    @transilienceai

    7 Nov 2024

    25 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. CVE-2024-10319 The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.6 v… https://t.co/VPWeGwlEJQ

    @CVEnew

    5 Nov 2024

    410 Impressions

    1 Retweet

    1 Like

    1 Bookmark

    0 Replies

    0 Quotes

Configurations