Unrated severityNVD Advisory· Published Sep 9, 2026
CVE-2026-83541
CVE-2026-83541
Description
The Sina Extension for Elementor WordPress plugin before 3.10.4 does not properly escape a Table widget setting before outputting it within an HTML attribute, which could allow users with the Contributor role and above to perform Stored Cross-Site Scripting attacks.
Affected products
2<3.10.4+ 1 more
- (no CPE)range: <3.10.4
- (no CPE)range: <3.10.4
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.