Description

The King Addons for Elementor – Free Elements, Widgets, Templates, and Features for Elementor plugin for WordPress is vulnerable to privilege escalation in versions 24.12.92 to 51.1.14 . This is due to the plugin not properly restricting the roles that users can register with. This makes it possible for unauthenticated attackers to register with administrator-level user accounts.

INFO

Published Date :

2025-10-31T06:42:55.486Z

Last Modified :

2025-10-31T06:42:55.486Z

Source :

Wordfence
AFFECTED PRODUCTS

The following products are affected by CVE-2025-8489 vulnerability.

Vendors Products
Kingaddons
  • King Addons For Elementor
Wordpress
  • Wordpress

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact