WordPress Pugin Vulnerability Puts Millions Of Websites At Risk

3728 Views

Elementor Pro is a famous plugin which is running on more than 11 million WordPress sites at the moment. This plugin allows developers to create exquisite websites, enabling a handful of features. In a shocking revelation, it has been discovered that there is an extremely critical vulnerability in Elementor Pro which allows perpetrators to gain complete control of any WordPress site using this extension.

As per the sources, this vulnerability was first discovered by a NinTechNet researcher named Jerome Bruandet. Meanwhile, other researchers have also highlighted the fact that this vulnerability is currently under exploitation from attackers with compromised files uploaded to several websites.

About the issue itself, the said vulnerability is the result of a broken access control on the WooCommerce plugin module. This vulnerability allows unauthorized users to modify the WordPress database with serious consequences. Bruandet revealed in his blog that this flaw allows any authenticated or unauthorized person to leverage the vulnerability and create an administrator account to elevate privileges. In order for this vulnerability to be exploited, a combination of Elementor Pro and and WooCommerce plugins must be installed on the WordPress site.

Acknowledging the presence of this lethal vulnerability, the developer of Elementor acted swiftly and released a patch in the version 3.11.7 to counter the threat. But the problem is far from over.

Not all users and developers have upgraded their WordPress sites and any website using an Elementor version 3.11.6 or lower has a potentially dangerous flaw that can be exploited by hackers with catastrophic outcomes.

Recent Posts

Zero-Trust Security for Mobile Apps

A Smarter Way to Build Secure and Trusted Applications Mobile apps are now part of our daily routine. We use them to send money, book taxis, order food, attend online meetings, and even talk to doctors. Because of this, mobile apps store a lot of personal and financial information. This includes passwords, home addresses, credit […]

Why Great UI/UX Is a Revenue Driver

A Simple Guide to Turning Design into Business Growth A beautiful app or website may look nice. But looking nice alone does not bring money. What really matters is how users feel when they use your product. If they feel confused, they leave. If they feel guided and confident, they stay—and they buy. Today, people […]

Ropstam Solutions Welcomes Ramadan with a Heartfelt Gesture

The arrival of the blessed month of Ramadan brings a unique sense of peace, reflection, and community. At Ropstam Solutions, we believe that our greatest strength is our people. To honor this sacred time and support our team as they embark on a month of fasting and spiritual growth, the management recently hosted a special […]

Why Most Mobile Apps Fail (And How to Build One That Users Actually Love)

Mobile apps are everywhere. Yet, most of them disappear within months of launch. Many apps never reach their target audience. Others get downloads but fail to keep users engaged. If you are planning to build a mobile app, this reality can feel discouraging. However, understanding why apps fail is the first step toward building one […]

Profile Picture

The WordPress team at Ropstam Solutions consists of highly skilled professionals specializing in WordPress development and customized digital solutions. With more than a decade of experience in this field, the team prides itself on delivering innovative and impactful content that showcases its dedication to excellence and advancement within the WordPress realm.

Ropstam WordPress Development Team

Related Posts

Naufal baby girl main image

Celebrating the Birth of Naufal Ali’s Baby Girl

At Ropstam, we value personal milestones as much as professional achievements. In line with our vision to celebrate each team member's personal milestones, we recently organized a fun-filled event...
Shopify vs Magento

Shopify vs Magento: Which Platform to Choose in 2024?

As an online business owner, selecting the right ecommerce platform is a critical decision for you. Shopify and Magento are two of the most popular options on the market, each with its own strengths...

Flask vs FastAPI: Which Python Framework to Choose in 2025?

As a Python developer, have you ever come across the question of which micro-framework to opt for? This is a common question and if you are looking for the right answer, you have come to the right...
Consider Vue.js

Why You Should Consider Vue.js For Web App Development

In the world of web development, choosing the right framework can make or break your project. The abundance of options can be overwhelming when choosing the right tool. Vue.js, an advanced...

Why our clients
love us?

Our clients love us because we prioritize effective communication and are committed to delivering high-quality software solutions that meet the highest standards of excellence.

anton testimonial for ropstam solutions

“They met expectations with every aspect of design and development of the product, and we’ve seen an increase in downloads and monthly users.”

Anton Neugebauer, CEO, RealAdvice Agency
mike stanzyk testimonial for ropstam solutions

“Their dedication to their clients is really impressive.  Ropstam Solutions Inc. communicates effectively with the client to ensure customer satisfaction.”

Mike Stanzyk, CEO, Stanzyk LLC

“Ropstam was an excellent partner in bringing our vision to life! They managed to strike the right balance between aesthetics and functionality, ensuring that the end product was not only visually appealing but also practical and usable.”

Jackie Philbin, Director - Nutrition for Longevity

Supercharge your software development with our expert team – get in touch today!