WordPress Pugin Vulnerability Puts Millions Of Websites At Risk

4212 Views

Elementor Pro is a famous plugin which is running on more than 11 million WordPress sites at the moment. This plugin allows developers to create exquisite websites, enabling a handful of features. In a shocking revelation, it has been discovered that there is an extremely critical vulnerability in Elementor Pro which allows perpetrators to gain complete control of any WordPress site using this extension.

As per the sources, this vulnerability was first discovered by a NinTechNet researcher named Jerome Bruandet. Meanwhile, other researchers have also highlighted the fact that this vulnerability is currently under exploitation from attackers with compromised files uploaded to several websites.

About the issue itself, the said vulnerability is the result of a broken access control on the WooCommerce plugin module. This vulnerability allows unauthorized users to modify the WordPress database with serious consequences. Bruandet revealed in his blog that this flaw allows any authenticated or unauthorized person to leverage the vulnerability and create an administrator account to elevate privileges. In order for this vulnerability to be exploited, a combination of Elementor Pro and and WooCommerce plugins must be installed on the WordPress site.

Acknowledging the presence of this lethal vulnerability, the developer of Elementor acted swiftly and released a patch in the version 3.11.7 to counter the threat. But the problem is far from over.

Not all users and developers have upgraded their WordPress sites and any website using an Elementor version 3.11.6 or lower has a potentially dangerous flaw that can be exploited by hackers with catastrophic outcomes.

Recent Posts

How Large Language Models Work: A Complete Guide to AI’s Most Powerful Architecture

Learn how Large Language Models work, their architecture, benefits, and business value in this complete guide to AI’s most powerful technology.

App Failure Analysis: Why Mobile Apps Fail

Mobile apps are everywhere, but success is far from guaranteed. Despite the growing demand for digital solutions, a large number of apps fail within the first year of launch. This is where App Failure Analysis becomes essential. It allows businesses to examine what went wrong, identify gaps in execution, and apply those insights to future […]

10 Essential WordPress Security Tips Every Beginner Should Know

Running a business website on WordPress is a smart choice. It is quick to set up, easy to manage, and flexible for both small sites and big online stores. But that flexibility also makes security very important for your business. These WordPress security tips help you lower risk, avoid downtime, and protect your brand. If […]

Best AI Chatbot Strategies to Boost Ecommerce Revenue using AI chatbot for ecommerce 

In today’s fast-growing digital market, businesses are increasingly relying on automation to enhance sales, improve customer experience, and streamline operations. One of the most impactful innovations in this space is the AI chatbot for ecommerce, which enables online stores to communicate with customers instantly while reducing manual workload. These intelligent systems are transforming how brands […]

Profile Picture

The WordPress team at Ropstam Solutions consists of highly skilled professionals specializing in WordPress development and customized digital solutions. With more than a decade of experience in this field, the team prides itself on delivering innovative and impactful content that showcases its dedication to excellence and advancement within the WordPress realm.

Ropstam WordPress Development Team

Related Posts

Mansoor Ahmed’s Farewell

Mansoor Ahmed’s Farewell

At Ropstam Solutions, we hold our team members in high regard, recognizing their dedication and contributions as the driving force behind our success. With this in mind, we are bidding a warm...
Guide for Hiring Mobile App Developers

How to Hire a Mobile App Developer: Detailed Guide 2024

The mobile app industry is booming with the exponential increase in the number of smartphone users over the last decade. This explosive growth presents both opportunities and challenges for...

OpenAI Releases ChatGPT App For iPhone Users

OpenAI, the company behind the viral chatbot ChatGPT, has released an iOS app. The Microsoft-backed AI company announced on Thursday that iPhone users can now leverage the AI-powered tool on the go....
php vs python

PHP vs Python – Which is Better for Web Development?

The process of crafting a successful website or application commences with choosing the appropriate programming language. In the competitive universe of software development, it is becoming...

Why our clients
love us?

Our clients love us because we prioritize effective communication and are committed to delivering high-quality software solutions that meet the highest standards of excellence.

anton testimonial for ropstam solutions

“They met expectations with every aspect of design and development of the product, and we’ve seen an increase in downloads and monthly users.”

Anton Neugebauer, CEO, RealAdvice Agency
mike stanzyk testimonial for ropstam solutions

“Their dedication to their clients is really impressive.  Ropstam Solutions Inc. communicates effectively with the client to ensure customer satisfaction.”

Mike Stanzyk, CEO, Stanzyk LLC

“Ropstam was an excellent partner in bringing our vision to life! They managed to strike the right balance between aesthetics and functionality, ensuring that the end product was not only visually appealing but also practical and usable.”

Jackie Philbin, Director - Nutrition for Longevity

Supercharge your software development with our expert team – get in touch today!