CVE-2026-4803 | wproyal Royal Addons for Elementor Plugin up to 1.7.1056 on WordPress AJAX wpr_update_form_action_meta Status cross site scripting
A vulnerability, which was classified as problematic, was found in wproyal Royal Addons for Elementor Plugin up to 1.7.1056 on WordPress. This issue affects the function wpr_update_form_action_meta of the component AJAX Handler. Executing a manipulation of the argument Status can lead to cross site scripting.
This vulnerability is registered as CVE-2026-4803. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More