Skip to main content

Vendor archive

la-studioweb CVEs

Beta · best-effort

7 CVEs tagged to vendor la-studioweb0 Critical, 3 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2025-4943

Published May 30, 2025

The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-lakit-element-link’ parameter in all versions up to, and in…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-10873

Published Nov 23, 2024

The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.4.2 via the _load_template function. Thi…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-37479

Published Jul 2, 2024

Local File Inclusion vulnerability in LA-Studio LA-Studio Element Kit for Elementor via "LaStudioKit Progress Bar" widget in New Post, specifically in the "progress_type" attribut…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5349

Published Jul 2, 2024

The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.3.8.1 via the 'map_style' parameter. Thi…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1