Medium severity5.4NVD Advisory· Published Aug 3, 2026· Updated Aug 12, 2026
CVE-2026-28147
CVE-2026-28147
Description
Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through 2.0.15.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=2.0.15+ 1 more
- (no CPE)range: <=2.0.15
- (no CPE)range: <=2.0.15
Patches
Vulnerability mechanics
References
1News mentions
1- Wordfence Intelligence Weekly WordPress Vulnerability Report (August 3, 2026 to August 9, 2026)Wordfence Blog · Aug 14, 2026