Threats Tagged 'cve-2026-0673'
View all threats tagged with 'cve-2026-0673'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-0673'
Click on any threat for detailed analysis and mitigation recommendations
The Element Pack Addons for Elementor WordPress plugin is vulnerable to Email Header Injection in all versions up to and including 8.3.15. The vulnerability arises from insufficient sanitization of newline characters in user input processed by the `element_pack_contact_form` AJAX action, allowing unauthenticated attackers to inject arbitrary email headers into emails sent by the contact form. Join the discussion | GCVE Database | 08/06/2026, 12:27:39 UTC Added: 08/06/2026, 18:16:28 UTC |
The Element Pack Addons for Elementor WordPress plugin is vulnerable to email header injection via the element_pack_contact_form AJAX action in all versions up to and including 8.3.15. This vulnerability arises from insufficient sanitization of newline characters in user input that is concatenated into email headers, allowing unauthenticated attackers to inject arbitrary email headers. The CVSS 3.1 base score is 5.3, indicating a medium severity vulnerability. Join the discussion | CVE Database V5 | 08/06/2026, 12:27:39 UTC Added: 08/06/2026, 12:42:02 UTC |
Showing 1 to 2 of 2 results