Summary
Elementor, a WordPress site builder plugin, has been hit by six XSS vulnerabilities. These vulnerabilities, found in both free and Pro versions, allow attackers to inject malicious scripts. Five vulnerabilities are due to insufficient input sanitization and output escaping, one due to insufficient input sanitization. All are rated as medium level security threats. Users are advised to update their plugin to the latest version.