Description

Inclusion of Functionality from Untrusted Control Sphere vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Royal Elementor Addons: from n/a through <= 1.7.1052.

INFO

Published Date :

2026-03-05T05:54:31.656Z

Last Modified :

2026-04-29T09:51:57.103Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2026-28135 vulnerability.

Vendors Products
Wordpress
  • Wordpress
Wp Royal
  • Royal Elementor Addons
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact