Record summary

CVE-2026-28147 has a selected CVSS score of 5.4 (medium).

Description

Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through 2.0.15.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 3, 2026 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus

Unlimited Elements For Elementor (Free Widgets, Addons, Templates)

Browse Unlimited Elements / Unlimited Elements For Elementor (Free Widgets, Addons, Templates)unlimited-elements-for-elementor

Default status: unaffected

CVE ListThrough 2.0.15affected

References

2