CVE-2025-8388 | PowerPack Lite for Elementor Plugin up to 2.9.4 on WordPress cursor_url cross site scripting (EUVD-2025-27536)
A vulnerability marked as problematic has been reported in PowerPack Lite for Elementor Plugin up to 2.9.4 on WordPress. This impacts an unknown function. The manipulation of the argument cursor_url leads to cross site scripting.
This vulnerability is listed as CVE-2025-8388. The attack may be initiated remotely. There is no available exploit.