CVE-2024-9868
- EPSS 0.25%
- Veröffentlicht 02.11.2024 02:15:12
- Zuletzt bearbeitet 04.11.2024 13:44:51
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Age Gate Widget 'url' parameter in all versions up to, and including...
CVE-2024-10310
- EPSS 0.25%
- Veröffentlicht 02.11.2024 02:15:12
- Zuletzt bearbeitet 04.11.2024 13:06:20
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Gallery Widget 'image_title' parameter in all versions up to,...
CVE-2024-47392
- EPSS 0.14%
- Veröffentlicht 05.10.2024 15:15:16
- Zuletzt bearbeitet 22.01.2025 18:25:37
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons allows Stored XSS.This issue affects Element Pack Elementor Addons: from n/a through 5.7.5.
CVE-2024-7247
- EPSS 0.26%
- Veröffentlicht 13.08.2024 06:15:05
- Zuletzt bearbeitet 29.01.2025 15:29:55
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Gallery and Countdown widgets in all versions up to,...
CVE-2024-4360
- EPSS 0.24%
- Veröffentlicht 12.08.2024 13:38:36
- Zuletzt bearbeitet 29.01.2025 15:45:04
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 5.7.2 due to ...
CVE-2024-4359
- EPSS 1.03%
- Veröffentlicht 12.08.2024 13:38:36
- Zuletzt bearbeitet 29.01.2025 15:44:39
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to arbitrary file reads in all versions up to, and including, 5.7.2 via the SVG widget and a lack of suffic...
CVE-2024-4643
- EPSS 0.33%
- Veröffentlicht 02.08.2024 10:16:00
- Zuletzt bearbeitet 29.01.2025 15:44:01
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘end_redirect_link’ parameter in versions up to, and including, 5.7....
CVE-2024-39667
- EPSS 0.11%
- Veröffentlicht 01.08.2024 22:15:28
- Zuletzt bearbeitet 22.01.2025 22:10:08
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons allows Stored XSS.This issue affects Element Pack Elementor Addons: from n/a through 5.6.11.
CVE-2024-2455
- EPSS 0.18%
- Veröffentlicht 01.08.2024 13:15:10
- Zuletzt bearbeitet 06.02.2025 17:46:37
The Element Pack - Addon for Elementor Page Builder WordPress Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the widget wrapper link URL in all versions up to, and including, 7.9.0 due to insufficient input sanitization ...
CVE-2024-5555
- EPSS 0.45%
- Veröffentlicht 18.07.2024 09:15:02
- Zuletzt bearbeitet 21.11.2024 09:47:55
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘social-link-title’ parameter in all versions up to, and including, ...