Vulnerabilities > Brainstormforce > Starter Templates > Low

DATE CVE VULNERABILITY TITLE RISK
2021-11-17 CVE-2021-42360 Resource Injection vulnerability in Brainstormforce Starter Templates
On sites that also had the Elementor plugin for WordPress installed, it was possible for users with the edit_posts capability, which includes Contributor-level users, to import blocks onto any page using the astra-page-elementor-batch-process AJAX action.
3.5