CVE-2024-10325
Published
CVSS v3
6.4
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT
Description
The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 1.6.45 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.
<p><strong>Ultimate Addons for Elementor (UAE)</strong> is a lightweight yet powerful Elementor addons plugin that extends Elementors capabilities with purposely built advanced <strong>Elementor widgets</strong>, <strong>templates</strong>, and <strong>site-building features</strong>.</p>
<p>UAE has evolved into a trusted Elementor Addons used by <strong>over 2 million websites</strong> to design creative sections directly within Elementor—no coding required.</p>
<p>The <strong>free version of UAE</strong> includes a hand-picked set of essential widgets like <strong>Basic Posts</strong>, <strong>Info Card</strong>, <strong>Duplicator</strong>, <strong>Navigation Menu</strong> and more—widgets that are genuinely useful for most websites. It also enables you to design headers and footers visually, and includes time-saving tools like <strong>Post Duplicator</strong>, improving your design process without cluttering your interface.</p>
<p>When you’re ready to go further, <a href="https://ultimateelementor.com/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">UAE Pro</a> unlocks a library of <strong>50+ premium widgets</strong>, <strong>200+ pre-designed section blocks</strong>, and advanced features like <a href="https://ultimateelementor.com/widgets/cross-site-copy-paste/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Cross-Site Copy-Paste</a>, <a href="https://ultimateelementor.com/widgets/display-conditions/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Advanced Display Conditions</a>, Form Stylers for popular form plugins, and visual effects like <a href="https://ultimateelementor.com/widgets/particle-backgrounds/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Particle Backgrounds</a>.</p>
<p>These features are built to save time and offer more design freedom—not just to impress, but to genuinely improve how you build and manage websites.</p>
<p>Whether you’re just getting started with WordPress or managing multiple client sites, UAE – Elementor Addons gives you the <strong>control</strong>, <strong>performance</strong>, and <strong>reliability</strong> to design beautiful, high-converting websites efficiently.</p>
<p><a href="https://app.zipwp.com/blueprint/ultimate-addons-for-elementor-demo-fas" rel="nofollow ugc">Try the live demo of Ultimate Addons for Elementor</a></p>
<p><span class="embed-youtube" style="text-align:center; display: block;"><iframe loading="lazy" class="youtube-player" width="750" height="422" src="https://www.youtube.com/embed/6xH5n6YYNJE?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent" allowfullscreen="true" style="border:0;" sandbox="allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox"></iframe></span></p>
<h3>Why Choose UAE Elementor Addon</h3>
<p>Ultimate Addons for Elementor equips you with tools that make page design faster, cleaner, and more creative. Whether you’re just starting your web design journey or building complex websites for clients, UAE can help.</p>
<h3>Why Over 2 Million Websites Use Ultimate Addons for Elementor:</h3>
<ul>
<li>
<p><strong>Create Engaging Designs:</strong> Build visually stunning sections with widgets that go beyond basic blocks. From Before/After sliders to particle backgrounds, everything is built to captivate, engage, and convert.</p>
</li>
<li>
<p><strong>Copy Elementor Designs From One Domain to Another:</strong> Use the Cross-Site Copy Paste feature to move sections and widgets between pages/sites, which streamlines the workflow and saves time.</p>
</li>
<li>
<p><strong>Keep Your Website Light by Loading Only What Is Needed:</strong> UAE loads code only for the widgets you use, which helps maintain site performance and supports SEO best practices.</p>
</li>
<li>
<p><strong>Build Faster With 200+ Readymade Section Blocks:</strong> Design faster with a massive library of pre-designed content sections. Just insert, customize, and publish. Ideal for agencies and freelancers seeking efficiency.</p>
</li>
<li>
<p><strong>50+ Premium Widgets That Truly Matter:</strong> UAE Pro includes over 50+ carefully crafted widgets. High-impact tools designed to solve real design challenges and boost functionality where it counts.</p>
</li>
<li>
<p><strong>Works Seamlessly With Any WordPress Theme:</strong> No theme lock-in or compatibility issues. UAE integrates smoothly with all compliant WordPress themes, including Astra.</p>
</li>
<li>
<p><strong>Designed for Beginners, Loved by Pros:</strong> Whether you’re a DIY site builder or a seasoned designer, UAE strikes the balance between ease of use and advanced functionality.</p>
</li>
<li>
<p><strong>Extend Elementor Without Plugin Overload:</strong> UAE packs multiple high-utility widgets into one lightweight plugin. Avoid installing multiple third-party plugins that slow down your site or create conflicts.</p>
</li>
</ul>
<h3>Free Widgets in Ultimate Addons for Elementor</h3>
<ul>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/basic-posts/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Basic Post</a></strong> – Display a list of your latest blog posts with layout options and styling controls.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/woo-product-grid/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Woo Product Grid</a></strong> – Showcase WooCommerce products in a responsive, customizable grid layout.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/counter/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Counter</a></strong> – Add animated number counters to highlight stats, achievements, or milestones.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/navigation/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Navigation Menu</a></strong> – With this powerful Elementor nav menu addon (widget), you can build responsive menus that match your style.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/site-logo/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Site Logo</a> & <a href="https://ultimateelementor.com/widgets/retina-logo/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Retina Logo</a></strong> – Showcase crisp branding across all devices.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/site-title/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Site Title</a> & <a href="https://ultimateelementor.com/widgets/site-tagline/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Tagline</a></strong> – Display key identity elements clearly and elegantly.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/search/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Search</a></strong> – Add fast, user-friendly search to your header or footer.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/cart/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Cart</a></strong> – Integrate a shopping cart preview for WooCommerce stores.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/page-title/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Page Title</a></strong> – Automatically show relevant page titles for better UX and SEO.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/breadcrumbs/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Breadcrumbs</a></strong> – Improve site navigation and search engine visibility.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/post-info/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Post Info</a></strong> – Display author, date, categories, and more for content clarity.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/scroll-to-top/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Scroll to Top</a></strong> – Give users a seamless way to navigate with this handy scroll addon for Elementor.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/reading-progress-bar/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Reading Progress Bar</a></strong> – Visually indicate article progress for better engagement.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/info-card/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Info Card</a></strong> – Combine icons, headings, text, and CTAs in one flexible block.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/copyright/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Copyright</a></strong> – Easily add site-wide copyright or legal text in the footer.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/duplicator/?utm_source=wprepo&utm_medium=uaelite&utm_campaign=wp-repo-uaelite" rel="nofollow ugc">Post Duplicator</a></strong> – Instantly duplicate posts, pages, headers, footers, and custom blocks to speed up content creation and safely experiment with layouts.</p>
</li>
</ul>
<p>Note: You can refer to our <a href="https://ultimateelementor.com/docs/getting-started-with-ultimate-addons-for-elementor-lite/" rel="nofollow ugc">step-by-step guide</a> that will help you set headers and footers quickly.</p>
<h3>How these Elementor widgets help:</h3>
<ul>
<li>Design full headers and footers visually, no need for theme settings or extra plugins</li>
<li>Create consistent layouts that look great on every device</li>
<li>Boost productivity using essential, ready-to-use widgets and a powerful Post Duplicator to instantly clone posts or pages and jump-start new content.</li>
<li>Improve user experience, accessibility, and on-page SEO</li>
<li>Seamlessly works with any WordPress theme for complete design freedom</li>
</ul>
<p>The free widgets in UAE give you a solid starting point to build fast, functional, and visually appealing websites, whether you’re designing a landing page, a portfolio, or a complete site layout.</p>
<p><strong>🚀 <a href="https://ultimateelementor.com/pricing/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Upgrade to Ultimate Addons for Elementor Pro</a> and unlock limitless possibilities!</strong></p>
<h3>Content and Interaction Widgets</h3>
<p>Create compelling, high-converting layouts with powerful content widgets designed for Elementor. UAE widgets help you deliver clear, engaging content experiences that are both informative and interactive. Great for business sites, blogs, service pages, and portfolios.</p>
<ul>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/svg-animator/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">SVG Animator</a></strong> – Animate SVG illustrations with ease using this widget. Great for adding visual interest and motion to your designs.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/advanced-heading/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Advanced Heading</a></strong> – Design eye-catching headlines with layered styles and dynamic effects.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/business-hours/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Business Hours</a></strong> – Display store or office hours clearly with styled layouts.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/content-toggle/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Content Toggle (Popular)</a></strong> – Switch between content blocks for comparisons, FAQs, or pricing plans.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/google-map/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Google Map</a></strong> – Add responsive, customizable location maps to boost trust and visibility.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/image-gallery/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Image Gallery</a></strong> – Showcase multiple images in a clean, organized grid or masonry layout.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/info-box/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Info Box</a></strong> – Combine icons, titles, and descriptions with CTA buttons in one elegant widget.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/modal-popup/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Modal Popup (Popular)</a></strong> – Easily trigger stylish popups for promotions, lead generation, or key messages.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/posts/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Posts</a></strong> – Showcase your latest blog posts or any custom post types with this visually appealing post grid addon for Elementor.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/price-list/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Price List</a></strong> – Highlight products or services with pricing and description in a clean layout.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/table/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Table</a></strong> – Create sortable, responsive tables to organize data or feature comparisons.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/video/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Video (Popular)</a></strong> – Embed YouTube, Vimeo, or self-hosted videos with custom styling options.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/video-gallery/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Video Gallery</a></strong> – Show multiple videos in a neatly organized, responsive gallery.</p>
</li>
</ul>
<h3>Creative Widgets</h3>
<p>Add flair, functionality, and interactivity to your Elementor designs. Ideal for portfolios, agencies, service-based businesses, and conversion-focused landing pages.</p>
<ul>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/before-after-slider/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Before After Slider</a></strong> – Visually compare two images using a draggable slider.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/countdown-timer/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Countdown Timer</a></strong> – Create urgency for offers, events, or product launches.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/display-conditions/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Display Conditions</a></strong> – Show or hide content dynamically based on user role, device, login status, and more.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/dual-color-heading/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Dual Color Heading</a></strong> – Highlight key phrases in headings with stylish dual-tone designs.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/fancy-heading/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Fancy Heading</a></strong> – Create animated, visually distinct headlines to capture attention.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/hotspots/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Hotspots (Popular)</a></strong> – Add interactive tooltips to images to explain features or details.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/login-form/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Login Form</a></strong> – Embed a beautifully styled, branded login form right into any page.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/marketing-button/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Marketing Button</a></strong> – Add call to action buttons with built-in icons, hover effects, and dual text.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/multi-buttons/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Multi Buttons</a></strong> – Display multiple action buttons side-by-side for better decision making.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/navigation-menu/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Navigation Menu</a></strong> – Create fully customizable, responsive menus directly within Elementor.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/off-canvas/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Off-Canvas</a></strong> – Create off-screen panels for menus, filters, or extra content that slides into view.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/price-box/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Price Box</a></strong> – Showcase pricing plans with styled headings, features, and call to action buttons.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/retina-image/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Retina Image</a></strong> – Ensure images display perfectly on high-resolution (Retina) screens.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/team-member/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Team Member</a></strong> – Introduce your team with photos, bios, social links and layout options.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/timeline/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Timeline (Popular)</a></strong> – Display milestones, history, or process steps in vertical or horizontal timelines.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/user-registration-form/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">User Registration Form</a></strong> – Let visitors register with a styled, user-friendly form.</p>
</li>
</ul>
<h3>Form Styler Widgets</h3>
<p>Match forms to your site design and improve conversions without writing CSS. These widgets let you customize popular WordPress forms with full control over layout, colors, typography, and spacing.</p>
<ul>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/contact-form-7/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Contact Form 7 Styler</a></strong> – Easily style CF7 forms to match your brand.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/gravity-form-styler/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Gravity Form Styler (Popular)</a></strong> – Enhance Gravity Forms visually with complete styling control.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/wp-fluent-forms-styler/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">WP Fluent Forms Styler</a></strong> – Customize Fluent Forms to blend seamlessly into your pages.</p>
</li>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/wpforms-styler/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">WPForms Styler</a></strong> – Transform WPForms into beautiful, responsive forms without touching a line of code.</p>
</li>
</ul>
<h3>SEO Widgets</h3>
<p>Boost search visibility, enhance content structure and build trust from the Elementor editor.</p>
<ul>
<li>
<p><strong><a href="https://ultimateelementor.com/widgets/business-reviews/?utm_source=wprepo&utm_medium=uaelite" rel="nofollow ugc">Busi