CVE-2026-45214 – WordPress Xpro Elementor Addons plugin <= 1.5.1 - SQL Injection vulnerability

CVE ID :CVE-2026-45214

Published : May 12, 2026, 11:16 a.m. | 1 hour, 14 minutes ago

Description :Improper Neutralization of Special Elements used in an SQL Command (‚SQL Injection‘) vulnerability in Xpro Xpro Elementor Addons xpro-elementor-addons allows Blind SQL Injection.This issue affects Xpro Elementor Addons: from n/a through <= 1.5.1.
Severity: 8.5 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…