cvedb.io
CVE-2023-0443
MEDIUM · CVSS 5.3
EPSS exploitation probability: 0%
Published 2023-05-30T08:15:09.460 · Last modified 2026-06-17T05:25:33.830

Summary

The AnyWhere Elementor WordPress plugin before 1.2.8 discloses a Freemius Secret Key which could be used by an attacker to purchase the pro subscription using test credit card numbers without actually paying the amount. Such key has been revoked.

Affected products

wpvibes — anywhere_elementor

Does this affect you?

Add your gear to cvedb and we'll alert you only when wpvibes ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.