Medium severity6.5NVD Advisory· Published Oct 7, 2026· Updated Oct 7, 2026
CVE-2026-105871
CVE-2026-105871
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons bdthemes-element-pack-lite allows Stored XSS.This issue affects Element Pack Elementor Addons: from n/a through 8.8.6.
Affected products
1- Range: <=8.8.6
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.