CVE-2025-11363 | Royal Addons for Elementor Plugin up to 1.7.1036 on WordPress wpr_addons_upload_file unrestricted upload

SecurityVulns

A vulnerability labeled as critical has been found in Royal Addons for Elementor Plugin up to 1.7.1036 on WordPress. The affected element is the function wpr_addons_upload_file. Executing manipulation can lead to unrestricted upload.

This vulnerability is registered as CVE-2025-11363. It is possible to launch the attack remotely. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More