CVE-2026-1620: Livemesh Addons LFI Lets Attackers Own Your WordPress Site
CVE-2026-1620 in Livemesh Addons for Elementor allows unauthenticated attackers to read arbitrary files via LFI path traversal. CVSS 8.8 severity affects all versions up to 9.0—patch immediately.