CVE-2024-56254
- EPSS 0.15%
- Veröffentlicht 02.01.2025 12:15:27
- Zuletzt bearbeitet 22.01.2025 17:44:38
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.6.
CVE-2024-10360
- EPSS 0.3%
- Veröffentlicht 29.10.2024 11:15:03
- Zuletzt bearbeitet 27.01.2025 15:19:13
The Move Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.3.5 via the render function in includes/widgets/accordion/widget.php, includes/widgets/remote-template/widget.p...
CVE-2024-47364
- EPSS 0.14%
- Veröffentlicht 06.10.2024 10:15:05
- Zuletzt bearbeitet 22.01.2025 18:27:35
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Move addons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.4.
CVE-2024-47396
- EPSS 0.14%
- Veröffentlicht 01.10.2024 02:15:09
- Zuletzt bearbeitet 22.01.2025 22:00:34
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.3.
CVE-2024-30525
- EPSS 0.13%
- Veröffentlicht 04.06.2024 20:15:10
- Zuletzt bearbeitet 21.11.2024 09:12:06
Missing Authorization vulnerability in moveaddons Move Addons for Elementor.This issue affects Move Addons for Elementor: from n/a through 1.2.9.
CVE-2024-4695
- EPSS 0.52%
- Veröffentlicht 21.05.2024 10:15:10
- Zuletzt bearbeitet 24.01.2025 14:36:46
The Move Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.3.1 due to insufficient input sanitization and output escaping on user supplied attributes. T...
CVE-2024-34562
- EPSS 0.29%
- Veröffentlicht 08.05.2024 11:15:24
- Zuletzt bearbeitet 27.01.2025 15:20:56
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.0.
CVE-2024-29920
- EPSS 0.13%
- Veröffentlicht 27.03.2024 08:15:39
- Zuletzt bearbeitet 27.01.2025 15:20:38
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.2.9.
CVE-2024-2131
- EPSS 0.08%
- Veröffentlicht 23.03.2024 02:15:47
- Zuletzt bearbeitet 27.01.2025 15:20:06
The Move Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's infobox and button widget in all versions up to, and including, 1.2.9 due to insufficient input sanitization and output escaping on user ...