A vulnerability was found in Royal Elementor Addons Pro Plugin up to 1.7.1040 on WordPress. It has been classified as problematic . This affects an unknown part. This manipulation causes cross site scripting. This vulnerability is registered as CVE-2026-40720 . Remote exploitation of the attack is possible. No exploit is available. Upgrading the affected component is recommended.