A vulnerability described as critical has been identified in Element Invader ElementInvader Addons for Elementor Plugin up to 1.4.2 on WordPress. The affected element is an unknown function. Executing a manipulation can lead to sql injection.
This vulnerability is registered as CVE-2026-25007. It is possible to launch the attack remotely. No exploit is available.