A critical vulnerability in the Elementor Pro WordPress plugin exposes millions of websites to remote code execution attacks. The flaw, tracked as CVE-2026-32475, affects all versions of Elementor Pro before 4.2.2 and stems from the plugin's File Upload module. Researchers at Patchstack, a cybersecurity company focused