CVE-2024-6627

Published
View on NVD ↗
CVSS v3
6.4
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT

Description

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's PDF View widget in all versions up to, and including, 3.11.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

<p><a href="https://happyaddons.com/" rel="nofollow ugc">Happy Addons for Elementor</a> is One of best Elementor Addons comes with <strong>Theme Builder</strong> that covers <strong>free Header Footer</strong>, <strong>Single Post Template</strong>, and <strong>Archive Page Builder</strong>, with <strong>143+</strong> Free &amp; Pro Widgets &amp; <strong>24+</strong> Features to enhance <a href="https://wordpress.org/plugins/elementor/" rel="ugc">Elementor</a>.<br /> Get <strong>70+</strong> full-page Elementor Templates &amp; <strong>500+</strong> Template Blocks.</p> <h3>Useful Links</h3> <p><a href="https://happyaddons.com/elementor-widgets/" rel="nofollow ugc">Demo</a> | <a href="https://happyaddons.com/docs/" rel="nofollow ugc">Docs</a> | <a href="https://www.youtube.com/channel/UC1-e7ewkKB1Dao1U90QFQFA" rel="nofollow ugc">Videos</a> | <a href="https://happyaddons.com/happy-support/" rel="nofollow ugc">Support</a> | <a href="https://happyaddons.com/roadmaps/#ideas" rel="nofollow ugc">IdeaSharing</a> | <a href="https://www.facebook.com/groups/HappyAddonsCommunity" rel="nofollow ugc">FacebookGroup</a> | <a href="https://happyaddons.com/pricing/" rel="nofollow ugc">Get Pro</a></p> <h3>Widgets In Free Version</h3> <ul> <li><strong><a href="https://demo.happyaddons.com/elementor-card-widget-demo/" rel="nofollow ugc">Card</a></strong>: Showcase products, articles, news.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-info-box-widget-demo/" rel="nofollow ugc">Info Box</a></strong>: Create information boxes.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-icon-box-widget-demo/" rel="nofollow ugc">Icon Box</a></strong>: Show info in iconic style.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-skill-bars-widget-demo/" rel="nofollow ugc">Skill Bars</a></strong>: Showcase progressive information.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-review-widget-demo/" rel="nofollow ugc">Review</a></strong>: Add feedback, reviews, &amp; ratings.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-image-compare-widget-demo/" rel="nofollow ugc">Image Compare</a></strong>: Showcase before/after images.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-gradient-heading-widget-demo/" rel="nofollow ugc">Gradient Heading</a></strong>: Add gradient to headlines.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-team-member-widget-demo/" rel="nofollow ugc">Team Member</a></strong>: Showcase team members.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-dual-button-widget-demo/" rel="nofollow ugc">Dual Button</a></strong>: Add two buttons within one container.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-number-widget-demo/" rel="nofollow ugc">Number</a></strong>: Create number blocks.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-justified-grid-widget-demo/" rel="nofollow ugc">Justified Grid</a></strong>: Create isotope gallery.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-testimonial-widget-demo/" rel="nofollow ugc">Testimonial</a></strong>: Add testimonial sections.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-logo-grid-widget-demo" rel="nofollow ugc">Logo Grid</a></strong>: Show logos in grid.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-slider-widget-demo/" rel="nofollow ugc">Slider</a></strong>: Create sliders with animations.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-carousel-widget-demo/" rel="nofollow ugc">Carousel</a></strong>: Create text/image carousels.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-image-grid-widget-demo/" rel="nofollow ugc">Image Grid</a></strong>: Create a simple image-grid.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-step-flow-widget-demo/" rel="nofollow ugc">Step Flow</a></strong>: Step-by-step visual diagram &amp; instructions.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-fun-factor-widget-demo/" rel="nofollow ugc">Fun-Factor</a></strong>: It’s a counter widget.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-calendly-widget-demo/" rel="nofollow ugc">Calendly</a></strong>: Integrate Calendly within site.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-news-ticker-widget-demo/" rel="nofollow ugc">News Ticker</a></strong>: Showcase content like news websites.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-social-icon-widget-demo/" rel="nofollow ugc">Social Icon</a></strong>: Add social links with it.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-twitter-feed-widget-demo/" rel="nofollow ugc">Twitter Feed</a></strong>: Bring Twitter-feed within site.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-bar-chart-widget-demo/" rel="nofollow ugc">Bar-Chart</a></strong>: Display stats in bar-charts.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-360-rotation-widget-demo/" rel="nofollow ugc">360° Rotation</a></strong>: Create 360-Degree rotated images.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-datatable-widget-demo/" rel="nofollow ugc">Data Table</a></strong>: Create data-table within Elementor Editor.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-pricing-table-widget-demo/" rel="nofollow ugc">Pricing Table Lite</a></strong>: Build pricing table.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-flip-box-widget-demo/" rel="nofollow ugc">Flip Box Lite</a></strong>: Create flipping items.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-post-tab-widget-demo/" rel="nofollow ugc">Post Tab</a></strong>: Showcase posts within tabs.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-post-list-widget-demo/" rel="nofollow ugc">Post List</a></strong>: List any posts.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-taxonomy-widget-demo/" rel="nofollow ugc">Taxonomy List</a></strong>: Create list of posts &#8211; sorting categories, tags.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-horizontal-timeline-widget-demo/" rel="nofollow ugc">Horizontal TimeLine</a></strong>: Design storyline horizontally.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-social-share-widget-demo/" rel="nofollow ugc">Social Share</a></strong>: Add social share system.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-event-calendar-widget-demo/" rel="nofollow ugc">Event Calendar</a></strong>: Add Google Calender, Event Calender Plugin’s Events.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-image-hover-effect-widget-demo/" rel="nofollow ugc">Image Hover Effect</a></strong>: Add 20+ hover effects to images.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-animated-link-widget-demo/" rel="nofollow ugc">Animated Link</a></strong>: Add animated link hover effects.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-mailchimp-widget-demo/" rel="nofollow ugc">Mailchimp Widget</a></strong>: Create mailchimp forms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-content-switcher-demo/" rel="nofollow ugc">Content Switcher</a></strong>: Toggle sections, pages, or texts.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-image-stack-group-demo/" rel="nofollow ugc">Image Stack Group</a></strong>: Show images in a stack group.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-creative-button-demo/" rel="nofollow ugc">Creative Button</a></strong>: Create buttons along with magnetic effect.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-image-accordion-demo/" rel="nofollow ugc">Image Accordion</a></strong>: Create accordions for images.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-pdf-view-widget-demo/" rel="nofollow ugc">PDF View</a></strong>: PDF Viewer widget.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-contact-form-7-widget-demo/" rel="nofollow ugc">Contact Form 7</a></strong>: Stylize CF7 forms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-caldera-forms-widget-demo/" rel="nofollow ugc">Caldera Forms</a></strong>: Style Caldera forms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-we-forms-widget-demo/" rel="nofollow ugc">weForms</a></strong>: Style weForms forms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-ninja-form-widget-demo/" rel="nofollow ugc">Ninja Forms</a></strong>: Beautify Nina forms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-wpform-widget-demo/" rel="nofollow ugc">WPForms</a></strong>: Style WPForms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-gravity-form-widget-demo/" rel="nofollow ugc">Gravity Forms</a></strong>: Customize Gravity Forms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-fluent-form-widget-demo/" rel="nofollow ugc">WP Fluent Forms</a></strong>: Beautify Fluent forms.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-comparison-table-widget-demo/" rel="nofollow ugc">Comparison Table</a></strong>: Create comparison tables.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-photo-stack-widget-demo/" rel="nofollow ugc">Photo Stack</a></strong>: Create a critical layout of Image stacks.</li> <li><strong><a href="https://demo-x.happyaddons.com/elementor-lordicon-widget-demo/" rel="nofollow ugc">Lord Icon</a></strong>: Add lord icons in site.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/site-logo/" rel="nofollow ugc">Site Logo</a></strong>: Customize site’s logo.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/site-title/" rel="nofollow ugc">Site Title</a></strong>: Design site’s title.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/site-tagline/" rel="nofollow ugc">Site Tagline</a></strong>: Manage site’s tagline.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/nav-menu/" rel="nofollow ugc">Nav Menu</a></strong>: Create and style navigation menus.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/page-title/" rel="nofollow ugc">Page Title</a></strong>: Stylize page titles.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/post-title/" rel="nofollow ugc">Post Title</a></strong>: Add and style post’s title.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/post-excerpt/" rel="nofollow ugc">Post Excerpt</a></strong>: Customize post excerpts.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/post-content/" rel="nofollow ugc">Post Content</a></strong>: Manage and style single post’s content.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/post-featured-image/" rel="nofollow ugc">Featured Image</a></strong>: Add and customize post’s featured image.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/author-boxmeta/" rel="nofollow ugc">Author Box(Meta)</a></strong>: Add &amp; style author’s meta descriptions.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/post-comments/" rel="nofollow ugc">Post Comments</a></strong>: Customize comment section.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/post-navigation/" rel="nofollow ugc">Post Navigation</a></strong>: Add &amp; stylize post navigation.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/post-info/" rel="nofollow ugc">Post Info(Meta)</a></strong>: Add post’s meta information.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/archive-title/" rel="nofollow ugc">Archive Title</a></strong>: Add and style archive page’s title.</li> <li><strong><a href="https://happyaddons.com/docs/happy-theme-builder/theme-building-widgets/archive-post/" rel="nofollow ugc">Archive Posts</a></strong>: Create &amp; style archive posts.</li> <li><strong><a href="https://happyaddons.com/docs/happy-addons-for-elementor/widgets/age-gate/" rel="nofollow ugc">Age Gate</a></strong>: Add age verification popup.</li> <li><strong><a href="https://demo.happyaddons.com/lightbox-demo/" rel="nofollow ugc">Lightbox</a></strong>: Video &amp; image lightbox.</li> <li><strong><a href="https://demo.happyaddons.com/liquid-hover-image-widget-demo/" rel="nofollow ugc">Liquid Hover Image</a></strong>: Add liquid hover effects to images.</li> <li><strong><a href="https://happyaddons.com/docs/happy-addons-for-elementor/widgets/text-scroll/" rel="nofollow ugc">Text Scroll</a></strong>: Add eye-catching scrolling text effects.</li> </ul> <h3>Widgets in HappyAddons Pro</h3> <ul> <li><strong><a href="https://demo.happyaddons.com/elementor-advanced-slider-widget-demo/" rel="nofollow ugc">Advanced Slider</a></strong>: It’s a slider builder.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-happy-mega-menu-widget-demo/" rel="nofollow ugc">Happy Mega Menu</a></strong>: Create MegaMenu with Elementor.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-one-page-navigation-widget-demo/" rel="nofollow ugc">One Page Navigation</a></strong>: Create one-page navigation.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-unfold-widget-demo/" rel="nofollow ugc">Unfold Widget</a></strong>: Create unfold items.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-off-canvas-content-demo/" rel="nofollow ugc">Off-Canvas Content/Menu</a></strong>: Add off-canvas content/menu items.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-feature-list-widget-demo/" rel="nofollow ugc">Feature List</a></strong>: Create beautiful lists items.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-pricing-table-widget-demo/" rel="nofollow ugc">Pricing Table</a></strong>: Create advanced pricing table.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-flip-box-widget-demo-2/" rel="nofollow ugc">Flip Box</a></strong>: Create 3d-flipped items.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-advanced-heading-widget-demo/" rel="nofollow ugc">Advanced Heading</a></strong>: Add multi-layered headings.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-image-hover-box-widget-demo/" rel="nofollow ugc">Hover Box</a></strong>: Show animated items on hovers.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-team-carousel-widget-demo/" rel="nofollow ugc">Team Carousel</a></strong>: Add multiple team members as carousel.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-scrolling-image-widget-demo/" rel="nofollow ugc">Scrolling Image</a></strong>: Add horizontally scrolling images &amp; more.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-advanced-tab-widget-demo/" rel="nofollow ugc">Advanced Tab</a></strong>: It’s tabbed content builder widget.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-advanced-accordion-widget-demo/" rel="nofollow ugc">Advanced Accordion</a></strong>: It’s an accordion builder.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-testimonial-carousel-widget-demo/" rel="nofollow ugc">Testimonial Carousel</a></strong>: Showcase testimonials in carousel.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-logo-carousel-widget-demo/" rel="nofollow ugc">Logo Carousel</a></strong>: Add logos in carousel styles.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-animated-text-widget-demo/" rel="nofollow ugc">Animated Text</a></strong>: Animated headings/texts with it.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-timeline-widget-demo/" rel="nofollow ugc">Timeline</a></strong>: It’s a timeline content maker widget.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-instagram-feed-widget-demo/" rel="nofollow ugc">Instagram Feed</a></strong>: Showcase instagram’s images directly.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-advanced-toggle-widget-demo/" rel="nofollow ugc">Advanced Toggle</a></strong>: Show/hide items on toggle.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-list-group-widget-demo/" rel="nofollow ugc">List Group</a></strong>: Add multiple lists beautifully.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-countdown-widget-demo/" rel="nofollow ugc">Countdown</a></strong>: Set countdown timers.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-source-code-widget-demo/" rel="nofollow ugc">Source Code</a></strong>: Showcase code snippets beautifully.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-promo-box-widget-demo/" rel="nofollow ugc">Promo Box</a></strong>: Add promotional content box.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-hot-spot-widgets-demo/" rel="nofollow ugc">Hot Spot</a></strong>: Create Hot spot images/items.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-price-menu-widget-demo/" rel="nofollow ugc">Price Menu</a></strong>: Display restaurant food menu list.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-business-hour-widget-demo/" rel="nofollow ugc">Business Hour</a></strong>: Show the business hours in a tabular style.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-line-chart-widget-demo/" rel="nofollow ugc">Line Chart</a></strong>: Showcase stats in line chart style.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-pie-doughnut-chart-widget-demo/" rel="nofollow ugc">Pie &amp; Doughnut Chart</a></strong>: Crate animated pie charts.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-polar-area-chart-widget-demo/" rel="nofollow ugc">Polar Area Chart</a></strong>: Create polar area charts.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-radar-chart-widget-demo/" rel="nofollow ugc">Radar Chart</a></strong>: Display data in radar chart styles.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-facebook-feed-widget-demo/" rel="nofollow ugc">Facebook Feed</a></strong>: Add facebook feed in site.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-twitter-feed-carousel-widget-demo/" rel="nofollow ugc">Twitter Feed Carousel</a></strong>: Create twitter feed carousels.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-breadcrumb-widget-demo/" rel="nofollow ugc">Breadcrumbs</a></strong>: Visualize site’s breadcrumbs.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-sticky-video-widget-demo/" rel="nofollow ugc">Sticky Video</a></strong>: Video player with sticky/picture-in-picture feature.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-advanced-datatable-widget-demo/" rel="nofollow ugc">Advanced Data table</a></strong>: Create Data Table with GoogleSheets, TablePress, CSV, &amp; Local Database.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-modal-popup-widget-demo/" rel="nofollow ugc">Modal Popup</a></strong>: Create click-triggered Popups.</li> <li><strong><a href="https://demo.happyaddons.com/single-image-scroll-widget-demo/" rel="nofollow ugc">Single Image Scroll</a></strong>: Scroll on hover effect on long image.</li> <li><strong><a href="https://demo.happyaddons.com/elementor-post-grid-widget-demo/" rel="nofollow ugc">Post G
WordPress Plugin DirectoryWordPress Plugin Directory
13.5M