CVE-2023-35050

WordPress Elementor Pro plugin <= 3.13.0 - Auth. Broken Access Control vulnerability

Missing Authorization vulnerability in Elementor Elementor Pro.This issue affects Elementor Pro: from n/a through 3.13.0.


We have discovered 270,361 live websites that are affected by CVE-2023-35050.

Run a Free Instant Scan




Affected Software

Product  Elementor Pro
Category Landing Page Builders
Vulnerable Domains270,361 live websites (20.15% of Elementor Pro install base)
Vulnerable Versions
  • from 0 through 3.13
Vulnerable Versions Count167 versions ( 68.72% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jun 19, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

CVE-2023-35050 usage by Country

United States87,742 websites



Germany30,838 websites
France14,750 websites
Brazil9,973 websites
Russia9,361 websites
Italy9,275 websites
GB9,190 websites
Cyprus7,660 websites
Spain7,108 websites
Poland6,293 websites

CVE-2023-35050 usage by TLD

.com107,358 websites
.com.br14,057 websites
.de13,051 websites
.org9,223 websites
.ru7,549 websites
.it7,465 websites
.co.uk6,301 websites
.nl5,273 websites
.pl5,137 websites
.net5,096 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-35050

Top websites that are affected by CVE-2023-35050. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
**************.de Germany***
******.com United States*,***
**********.com United States*,***
***********************.com United States*,***
******************.org United States*,***
*******.com United States*,***
*********.com United States*,***
**********.com United States*,***
***************.org United States*,***
**********************.de United States**,***
See full domain list

FAQ

CVE-2023-35050 is Missing Authorization in Elementor Pro
A total of 270,361 websites have been identified as vulnerable to CVE-2023-35050, based on global website indexing conducted by WebTechSurvey.
The Elementor Pro is affected by the CVE-2023-35050 vulnerability.
Elementor Pro versions up to and including 3.13 are vulnerable to CVE-2023-35050.