Unauthenticated Cross Site Request Forgery (CSRF) in Avada Core <= 5.15.6 versions.
Update the WordPress Avada Core Plugin to the latest available version (at least 5.15.7).