CVE-2024-37091: Stylemixthemes Consulting Elementor Widgets
High severity, CVSS 8.8. EPSS: 1.2% chance of exploitation in the next 30 days.
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in StylemixThemes Consulting Elementor Widgets, StylemixThemes Masterstudy Elementor Widgets allows OS Command Injection.This issue affects Consulting Elementor Widgets: from n/a through 1.3.0; Masterstudy Elementor Widgets: from n/a through 1.2.2.
Affected products
- Stylemixthemes Consulting Elementor Widgets: before 1.3.1 (fixed in 1.3.1)
Published 2024-06-24. Last modified 2026-06-17.