Description

Insertion of Sensitive Information Into Sent Data vulnerability in UserElements Ultimate Member Widgets for Elementor ultimate-member-widgets-for-elementor allows Retrieve Embedded Sensitive Data.This issue affects Ultimate Member Widgets for Elementor: from n/a through <= 2.3.

INFO

Published Date :

2025-12-18T07:22:18.838Z

Last Modified :

2026-04-01T14:10:46.606Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2025-66116 vulnerability.

Vendors Products
Userelements
  • Ultimate Member Widgets For Elementor
Wordpress
  • Wordpress

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact