Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Unlimited Elements For Elementor allows Blind SQL Injection.
This issue affects Unlimited Elements For Elementor: from n/a through 2.0.8.
Update the WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) Plugin to the latest available version (at least 2.0.9).