WPSyncSheets Lite For Elementor – Elementor Pro Form Google Spreadsheet Addon <= 1.4 - Running Vulnerable Dependencies
2025-01-17 00:00
AnonymousStrategic Overview
StatusPatched in 1.4.1
Affected PluginConnect Elementor Forms to Google Sheets Addon
Affected Version
<= 1.4CVSS3.7Low
CVE
N/AVulnerability Overview
The WPSyncSheets Lite For Elementor – Elementor Pro Form Google Spreadsheet Addon plugin for WordPress was running several vulnerable dependencies such as Guzzle and phpseclib in all versions up to, and including, 1.4. It has not been confirmed that any of these packages have exploitable vulnerabilities in the context of the WordPress plugin.
Technical Analysis
REMEDIATION: Update to version 1.4.1, or a newer patched version --- IDENTIFIER: CWE-1395 (Dependency on Vulnerable Third-Party Component) The product has a dependency on a third-party component that contains one or more known vulnerabilities.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C