Wpmet

Elementskit Elementor Addons

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 24.07.2025 23:15:26
  • Zuletzt bearbeitet 28.07.2025 15:07:38

The ElementsKit Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribute of a custom widget in all versions up to, and including, 3.5.2 due to insufficient input sanitization and output es...

  • EPSS 0.04%
  • Veröffentlicht 19.06.2025 03:40:13
  • Zuletzt bearbeitet 10.07.2025 00:06:38

The ElementsKit Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin image comparison widget's before/after labels in all versions up to, and including, 3.5.2 due to insufficient input saniti...

  • EPSS 0.02%
  • Veröffentlicht 29.03.2025 07:23:45
  • Zuletzt bearbeitet 29.07.2025 23:20:53

The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown Timer Widget ekit_countdown_timer_title parameter in all versions up to, and including, 3.4.7 due to insufficient input sanitization ...

  • EPSS 0.11%
  • Veröffentlicht 19.02.2025 12:15:31
  • Zuletzt bearbeitet 25.02.2025 20:21:17

The ElementsKit Elementor addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.4.0 due to a missing capability checks on the get_megamenu_content() function. This makes it possible for u...

  • EPSS 0.05%
  • Veröffentlicht 15.02.2025 10:15:08
  • Zuletzt bearbeitet 24.02.2025 12:31:01

The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Accordion widget in all versions up to, and including, 3.4.0 due to insufficient input sanitization and output escaping on user ...

  • EPSS 0.04%
  • Veröffentlicht 25.09.2024 13:15:04
  • Zuletzt bearbeitet 02.10.2024 18:56:40

The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Video widget in all versions up to, and including, 3.2.7 due to insufficient input sanitization and output escaping on user supplied a...

  • EPSS 0.15%
  • Veröffentlicht 16.03.2024 03:15:06
  • Zuletzt bearbeitet 08.01.2025 18:14:29

The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the progress bar element attributes in all versions up to, and including, 3.0.3 due to insufficient input sanitization and output escaping. This ma...