
CVE-2026-18039 The Essential Addons for Elementor WordPress plugin before 6.7.2 does not prevent user-supplied registration fields from overwriting reserved account attributes, all… https://www.cve.org/CVERecord?id=CVE-2026-18039
Post summary
The text notes a flaw in Essential Addons for Elementor that permits overwriting reserved account attributes via user‑supplied registration fields, but it gives no PoC, exploit, patch, or active exploitation details.

