WPSyncSheets Lite For Elementor – Elementor Pro Form Google Spreadsheet Addon <= 1.4 - Running Vulnerable Dependencies

2025-01-17 00:00
Anonymous

Strategic Overview

Vulnerability Overview

The WPSyncSheets Lite For Elementor – Elementor Pro Form Google Spreadsheet Addon plugin for WordPress was running several vulnerable dependencies such as Guzzle and phpseclib in all versions up to, and including, 1.4. It has not been confirmed that any of these packages have exploitable vulnerabilities in the context of the WordPress plugin.

Technical Analysis

REMEDIATION: Update to version 1.4.1, or a newer patched version --- IDENTIFIER: CWE-1395 (Dependency on Vulnerable Third-Party Component) The product has a dependency on a third-party component that contains one or more known vulnerabilities.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C