Skip to main content

Vendor/product archive

wedevs / happy_addons_for_elementor CVEs

Beta · best-effort

8 CVEs tagged to wedevs / happy_addons_for_elementor0 Critical, 1 High, 7 Medium, 0 Low, 0 Unrated.

CVE-2024-12852

Published Jan 8, 2025

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ha_cmc_text' parameter of the Happy Mouse Cursor in all versions up to, a…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8801

Published Sep 25, 2024

The Happy Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.12.2 via the Content Switcher widget. T…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5790

Published Jun 29, 2024

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ attribute within the plugin's Gradient Heading widget in all version…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-6632

Published Jan 11, 2024

The Happy Addons for Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via DOM in all versions up to and including 3.9.1.1 (versions up to 2.9.1.1 in…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-51676

Published Dec 29, 2023

Server-Side Request Forgery (SSRF) vulnerability in Leevio Happy Addons for Elementor.This issue affects Happy Addons for Elementor: from n/a through 3.9.1.1.

CVSS 4.9 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-41236

Published Sep 27, 2023

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Happy addons Happy Elementor Addons Pro plugin <= 2.8.0 versions.

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-24292

Published May 17, 2021

The Happy Addons for Elementor WordPress plugin before 2.24.0, Happy Addons Pro for Elementor WordPress plugin before 1.17.0 have a number of widgets that are vulnerable to stored…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1