Critical severity9.8NVD Advisory· Published May 12, 2023· Updated Jun 17, 2026
CVE-2023-32243
CVE-2023-32243
Description
Improper Authentication vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation. This issue affects Essential Addons for Elementor: from 5.4.0 through 5.7.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:wpdeveloper:essential_addons_for_elementor:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:wpdeveloper:essential_addons_for_elementor:*:*:*:*:*:wordpress:*:*range: >=5.4.0,<5.7.1
- (no CPE)range: 5.4.0
- Range: 5.4.0 - 5.7.1
Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/172457/WordPress-Elementor-Lite-5.7.1-Arbitrary-Password-Reset.htmlnvdExploitThird Party AdvisoryVDB Entry
- patchstack.com/articles/critical-privilege-escalation-in-essential-addons-for-elementor-plugin-affecting-1-million-sitesnvdExploitThird Party Advisory
- patchstack.com/database/vulnerability/essential-addons-for-elementor-lite/wordpress-essential-addons-for-elementor-plugin-5-4-0-5-7-1-unauthenticated-privilege-escalation-vulnerabilitynvdThird Party Advisory
News mentions
0No linked articles in our index yet.