CVE-2026-32475: Elementor Pro File Upload RCE
Critical vulnerability in Elementor Pro WordPress plugin allowing unauthenticated attackers to upload PHP files and execute code. CVSS 9.0. Affects versions up…
Critical vulnerability in Elementor Pro WordPress plugin allowing unauthenticated attackers to upload PHP files and execute code. CVSS 9.0. Affects versions up…
A popular WordPress page builder plugin. Versions up to 4.2.1 are vulnerable to unauthenticated PHP upload and RCE (CVE-2026-32475). Patched in 4.2.2.
Cybersecurity researchers have disclosed a critical vulnerability in the Elementor Pro WordPress plugin that could allow unauthenticated attackers to upload PHP files…