CVE-2026-18351 | addonsorg Drag and Drop File Upload for Elementor Forms Plugin elementor_file_upload unrestricted upload

SecurityVulns

A vulnerability, which was classified as critical, was found in addonsorg Drag and Drop File Upload for Elementor Forms Plugin up to 1.6.0 on WordPress. Affected is the function elementor_file_upload. The manipulation of the argument Type results in unrestricted upload.

This vulnerability was named CVE-2026-18351. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More