WordPress Elementor Website Builder plugin before 3.1.4 contains a DOM cross-site scripting vulnerability. It does not sanitize or escape user input appended to the DOM via a malicious hash.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view