The Elegant Themes Monarch plugin before 1.2.7 for WordPress has privilege escalation.
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Bloom Plugin | — | Update bloom plugin to version 1.1.1, or a newer patched version | May 15, 2025 | Feb 17, 2016 |
| Divi Builder Plugin | — | Update divi-builder plugin to version 1.2.4, or a newer patched version | May 15, 2025 | Feb 17, 2016 |
| Monarch Plugin | — | Update monarch plugin to version 1.2.7, or a newer patched version | May 15, 2025 | Feb 17, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub