CVE-2024-9657
- EPSS 1.32%
- Veröffentlicht 05.11.2024 12:15:15
- Zuletzt bearbeitet 08.11.2024 16:00:28
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘tooltip' parameter in all versions up to, and including, 5.10.2 due...
CVE-2024-9868
- EPSS 0.34%
- Veröffentlicht 02.11.2024 02:15:12
- Zuletzt bearbeitet 04.11.2024 13:44:51
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Age Gate Widget 'url' parameter in all versions up to, and including...
CVE-2024-10310
- EPSS 0.34%
- Veröffentlicht 02.11.2024 02:15:12
- Zuletzt bearbeitet 04.11.2024 13:06:20
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Gallery Widget 'image_title' parameter in all versions up to,...
CVE-2024-47392
- EPSS 0.2%
- Veröffentlicht 05.10.2024 15:15:16
- Zuletzt bearbeitet 01.04.2026 16:18:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bdthemes Element Pack Elementor Addons bdthemes-element-pack-lite allows Stored XSS.This issue affects Element Pack Elementor Addons: from n/a throu...
CVE-2024-7247
- EPSS 0.26%
- Veröffentlicht 13.08.2024 06:15:05
- Zuletzt bearbeitet 29.01.2025 15:29:55
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Gallery and Countdown widgets in all versions up to,...
CVE-2024-4360
- EPSS 0.27%
- Veröffentlicht 12.08.2024 13:38:36
- Zuletzt bearbeitet 08.04.2026 18:21:47
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 5.7.6 due to ...
CVE-2024-4359
- EPSS 0.79%
- Veröffentlicht 12.08.2024 13:38:36
- Zuletzt bearbeitet 08.04.2026 19:21:35
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to arbitrary file reads in all versions up to, and including, 5.7.2 via the SVG widget and a lack of suffic...
CVE-2024-4643
- EPSS 0.38%
- Veröffentlicht 02.08.2024 10:16:00
- Zuletzt bearbeitet 08.04.2026 17:18:56
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘end_redirect_link’ parameter in versions up to, and including, 5.7....
CVE-2024-39667
- EPSS 0.11%
- Veröffentlicht 01.08.2024 22:15:28
- Zuletzt bearbeitet 22.01.2025 22:10:08
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons allows Stored XSS.This issue affects Element Pack Elementor Addons: from n/a through 5.6.11.
CVE-2024-2455
- EPSS 0.18%
- Veröffentlicht 01.08.2024 13:15:10
- Zuletzt bearbeitet 06.02.2025 17:46:37
The Element Pack - Addon for Elementor Page Builder WordPress Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the widget wrapper link URL in all versions up to, and including, 7.9.0 due to insufficient input sanitization ...