Skip to main content

Vendor/product archive

wpdeveloper / essential_addons_for_elementor CVEs

Beta · best-effort

55 CVEs tagged to wpdeveloper / essential_addons_for_elementor2 Critical, 7 High, 45 Medium, 1 Low, 0 Unrated.

CVE-2023-3779

Published Jul 20, 2023

The Essential Addons For Elementor plugin for WordPress is vulnerable to unauthenticated API key disclosure in versions up to, and including, 5.8.1 due to the plugin adding the AP…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-32243

Published May 12, 2023

Improper Authentication vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation. This issue affects Essential Addons for Elementor: from 5.4.0 thro…

CVSS 9.8 · Critical
evidence mentions
6
Buzz score
32.5
Vendor/product tagsBeta · best-effort

CVE-2022-0683

Published Feb 24, 2022

The Essential Addons for Elementor Lite WordPress plugin is vulnerable to Cross-Site Scripting due to insufficient escaping and sanitization of the settings parameter found in the…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-0320

Published Feb 1, 2022

The Essential Addons for Elementor WordPress plugin before 5.0.5 does not validate and sanitise some template data before it them in include statements, which could allow unauthen…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-24255

Published May 5, 2021

The Essential Addons for Elementor Lite WordPress Plugin before 4.5.4 has two widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as co…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 51-55 of 55 CVEsPage 3 of 3