CVE-2024-37479: La-Studioweb Element Kit For Elementor
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Local File Inclusion vulnerability in LA-Studio LA-Studio Element Kit for Elementor via "LaStudioKit Progress Bar" widget in New Post, specifically in the "progress_type" attribute.This issue affects LA-Studio Element Kit for Elementor: from n/a through 1.3.8.1.
Affected products
- La-Studioweb Element Kit For Elementor: before 1.3.9 (fixed in 1.3.9)
Published 2024-07-02. Last modified 2026-06-17.