HIGH
pixarlabs
CVE published 2026-09-18
CVE-2026-85410
The Master Addons for Elementor plugin for WordPress has an authorization bypass vulnerability in all versions up to 3.2.2. Authenticated attackers with contributor-level access can modify titles and metadata of arbitrary posts or permanently delete posts. This vulnerability allows attackers to modify or delete content without proper authorization, potentially leading to data integrity issues and security [truncated]