CVE-2024-8858
- EPSS 0.26%
- Veröffentlicht 25.09.2024 11:15:12
- Zuletzt bearbeitet 08.04.2026 19:22:30
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘piechart_settings’ parameter in all versions up to, and including, 8.5 due to insufficient input sanitization and output escaping. This makes ...
CVE-2024-47303
- EPSS 0.16%
- Veröffentlicht 25.09.2024 08:15:04
- Zuletzt bearbeitet 01.04.2026 16:18:01
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in livemesh Livemesh Addons for Elementor addons-for-elementor allows Cross-Site Scripting (XSS).This issue affects Livemesh Addons for Elementor: from...
CVE-2024-3639
- EPSS 0.23%
- Veröffentlicht 04.07.2024 04:15:16
- Zuletzt bearbeitet 08.04.2026 18:21:29
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Posts Grid widget in all versions up to, and including, 8.3.7 due to insufficient input sanitization and output escaping on user supp...
CVE-2024-3638
- EPSS 0.23%
- Veröffentlicht 04.07.2024 04:15:15
- Zuletzt bearbeitet 08.04.2026 18:21:29
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Marquee Text Widget, Testimonials Widget, and Testimonial Slider widgets in all versions up to, and including, 8.4.1 due to insufficie...
CVE-2024-2926
- EPSS 0.61%
- Veröffentlicht 04.07.2024 04:15:14
- Zuletzt bearbeitet 08.04.2026 18:21:16
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 8.3.7 due to insufficient input sanitization and output escaping on user supplied attrib...
CVE-2024-2385
- EPSS 0.24%
- Veröffentlicht 04.07.2024 04:15:14
- Zuletzt bearbeitet 08.04.2026 17:18:33
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 8.4 via several of the plugin's widgets through the 'style' attribute. This makes it possible for authenticated attacker...
CVE-2024-5229
- EPSS 0.27%
- Veröffentlicht 25.05.2024 03:15:08
- Zuletzt bearbeitet 08.04.2026 19:21:53
The Primary Addon for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Pricing Table widget in all versions up to, and including, 1.5.5 due to insufficient input sanitization and output escaping on user sup...
CVE-2024-2655
- EPSS 0.27%
- Veröffentlicht 10.04.2024 06:15:06
- Zuletzt bearbeitet 08.04.2026 18:21:09
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Post widgets in all versions up to, and including, 8.3.5 due to insufficient input sanitization and output escaping on author display ...
CVE-2024-2539
- EPSS 0.17%
- Veröffentlicht 10.04.2024 06:15:06
- Zuletzt bearbeitet 08.04.2026 18:21:08
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widget '_id' attributes in all versions up to, and including, 8.3.6 due to insufficient input sanitization and output escaping on user supplied att...
CVE-2024-1466
- EPSS 0.23%
- Veröffentlicht 09.04.2024 19:15:18
- Zuletzt bearbeitet 08.04.2026 18:20:39
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘slider_style’ attribute of the Posts Multislider widget in all versions up to, and including, 8.3.4 due to insufficient input sanitization and...