CVE-2023-0336: Ooohboi Steroids For Elementor Project Ooohboi Steroids For Elementor
Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.
The OoohBoi Steroids for Elementor WordPress plugin before 2.1.5 has CSRF and broken access control vulnerabilities which leads user with role as low as subscriber to delete attachment.
Affected products
- Ooohboi Steroids For Elementor Project Ooohboi Steroids For Elementor: before 2.1.5 (fixed in 2.1.5)
Published 2023-03-27. Last modified 2026-06-17.