Skip to main content

Vendor/product archive

wpdeveloper / essential_addons_for_elementor CVEs

Beta · best-effort

55 CVEs tagged to wpdeveloper / essential_addons_for_elementor2 Critical, 7 High, 45 Medium, 1 Low, 0 Unrated.

CVE-2025-69092

Published Dec 30, 2025

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lit…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-6244

Published Jul 8, 2025

The Essential Addons for Elementor – Popular Elementor Templates and Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the via `Calendar` And `Business…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-9994

Published Jun 7, 2025

The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-9993

Published Jun 7, 2025

The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-24752

Published Apr 17, 2025

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lit…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-39590

Published Apr 16, 2025

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lit…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-39589

Published Apr 16, 2025

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lite allows R…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56063

Published Dec 31, 2024

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lit…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8979

Published Nov 15, 2024

The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Sensitive Information Exposure in…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8978

Published Nov 15, 2024

The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Sensitive Information Exposure in…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8961

Published Nov 15, 2024

The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-4447

Published Oct 16, 2024

The Essential Addons for Elementor plugin for WordPress is vulnerable to privilege escalation in versions up to and including 4.6.4 due to a lack of restrictions on who can add a…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-4446

Published Oct 16, 2024

The Essential Addons for Elementor plugin for WordPress is vulnerable to authorization bypass in versions up to and including 4.6.4 due to missing capability checks and nonce disc…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8742

Published Sep 13, 2024

The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8440

Published Sep 11, 2024

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-7092

Published Aug 13, 2024

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘no_m…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39649

Published Aug 1, 2024

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lit…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5189

Published Jun 11, 2024

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘cust…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5612

Published Jun 7, 2024

The Essential Addons for Elementor Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘eael_lightbox_open_btn_icon’ parameter within the Lightbox & Moda…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5188

Published Jun 6, 2024

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'get_…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5073

Published May 30, 2024

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Twitt…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5086

Published May 29, 2024

The Essential Addons for Elementor PRO – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the p…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41955

Published May 17, 2024

Improper Privilege Management vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation.This issue affects Essential Addons for Elementor: from n/a t…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-4624

Published May 14, 2024

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugins for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘eae…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 55 CVEsPage 1 of 3