Essential Addons for Elementor: A security weakness
Essential Addons for Elementor is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
- Component
- Essential Addons for Elementor
- Plugin slug
essential-addons-for-elementor-lite- Affected
- See vendor advisory
- Safe version
- See mitigation notes
- Published
- Feb 19, 2026
- Weakness
- CWE-862 — Missing Authorization
This CVE was published Feb 19, 2026 and is one of 29 known issues for this plugin.
Patch or disable the affected component.
Update Essential Addons for Elementor to a release outside the affected range, or disable and remove it until a fixed version is available.
Technical description
Missing Authorization vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Addons for Elementor: from n/a through <= 6.5.5.
CVE / CNA vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N