OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-103082

HIGH · CVSS 7.2 EPSS 0.19%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

The LA-Studio Element Kit for Elementor is vulnerable to a Server-Side Request Forgery (SSRF) flaw, which could allow an attacker to send unauthorized requests from the server to internal resources. This vulnerability poses a significant risk as it may lead to data exposure or further exploitation of the server's network. Organizations using versions up to 1.6.2 of this plugin should prioritize patching to mitigate potential security breaches.

CVE
CVE-2026-103082
Severity
HIGH
CVSS
7.2
EPSS
0.19%

Original NVD Description

Server-Side Request Forgery (SSRF) vulnerability in LA-Studio LA-Studio Element Kit for Elementor lastudio-element-kit allows Server Side Request Forgery.This issue affects LA-Studio Element Kit for Elementor: from n/a through 1.6.2.