Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-17565

UNKNOWN NVD
CVSS Score 0
Severity UNKNOWN
Published Aug 19, 2026
Vendor unknown

Description

The Animation Addons for Elementor WordPress plugin before 2.7.2 does not validate a user-supplied value before using it to build the host of a server-side HTTP request, allowing unauthenticated users to make the site issue requests to internal hosts and read the responses back.

References