CVE-2026-13407 | Royal Elementor Addons Plugin up to 1.7.1066 on WordPress Form Widget escape output
A vulnerability labeled as critical has been found in Royal Elementor Addons Plugin up to 1.7.1066 on WordPress. Affected is an unknown function of the component Form Widget. The manipulation results in escaping of output.
This vulnerability is reported as CVE-2026-13407. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.VulDB Recent EntriesRead More