Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themesflat themesflat-addons-for-elementor themesflat-addons-for-elementor allows Stored XSS.This issue affects themesflat-addons-for-elementor: from n/a through <= 2.3.2.

INFO

Published Date :

2026-04-08T08:30:12.864Z

Last Modified :

2026-04-08T08:30:12.864Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2026-39500 vulnerability.

Vendors Products
Themesflat
  • Themesflat Addons For Elementor
Wordpress
  • Wordpress

CVSS Vulnerability Scoring System