Leevio

Happy Addons For Elementor

26 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.29%
  • Veröffentlicht 09.04.2024 19:15:16
  • Zuletzt bearbeitet 07.01.2025 18:19:26

The Happy Addons for Elementor plugin for WordPress is vulnerable to unauthorized access of data due to insufficient authorization on the duplicate_thing() function in all versions up to, and including, 3.10.4. This makes it possible for attackers, w...

  • EPSS 0.06%
  • Veröffentlicht 19.03.2024 16:15:15
  • Zuletzt bearbeitet 08.01.2025 16:30:17

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leevio Happy Addons for Elementor allows Stored XSS.This issue affects Happy Addons for Elementor: from n/a through 3.10.1.

  • EPSS 0.24%
  • Veröffentlicht 07.03.2024 06:15:50
  • Zuletzt bearbeitet 07.01.2025 18:20:57

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘author_meta_tag’ attribute of the Author Meta widget in all versions up to, and including, 3.10.3 due to insufficient input sanitization and out...

  • EPSS 0.32%
  • Veröffentlicht 07.03.2024 06:15:50
  • Zuletzt bearbeitet 07.01.2025 18:21:27

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘archive_title_tag’ attribute of the Archive Title widget in all versions up to, and including, 3.10.3 due to insufficient input sanitization and...

  • EPSS 0.89%
  • Veröffentlicht 29.02.2024 01:43:29
  • Zuletzt bearbeitet 27.12.2024 15:57:28

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the side image URL parameter in the Age Gate in all versions up to, and including, 3.10.1 due to insufficient input sanitization and output escaping....

  • EPSS 1.71%
  • Veröffentlicht 29.02.2024 01:43:11
  • Zuletzt bearbeitet 27.12.2024 15:51:18

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the wrapper link parameter in the Age Gate in all versions up to, and including, 3.10.1 due to insufficient input sanitization and output escaping. T...