CVE-2026-57376
- EPSS 0.18%
- Veröffentlicht 13.07.2026 08:41:23
- Zuletzt bearbeitet 13.07.2026 17:17:44
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows DOM-Based XSS.This issue affects ElementInvader Addon...
CVE-2026-25007
- EPSS 0.25%
- Veröffentlicht 25.03.2026 16:14:36
- Zuletzt bearbeitet 24.04.2026 16:32:53
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows Blind SQL Injection.This issue affects ElementInvader...
CVE-2026-25028
- EPSS 0.19%
- Veröffentlicht 03.02.2026 14:08:41
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ElementInvader Addons for Elemen...
CVE-2025-58205
- EPSS 0.17%
- Veröffentlicht 27.08.2025 17:45:46
- Zuletzt bearbeitet 23.04.2026 15:33:18
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows DOM-Based XSS.This issue affects ElementInvader Addon...
CVE-2025-48288
- EPSS 0.21%
- Veröffentlicht 19.05.2025 14:45:29
- Zuletzt bearbeitet 23.04.2026 15:31:02
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows Stored XSS.This issue affects ElementInvader Addons f...
CVE-2025-24729
- EPSS 0.32%
- Veröffentlicht 24.01.2025 18:15:47
- Zuletzt bearbeitet 23.04.2026 15:25:23
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows Stored XSS.This issue affects ElementInvader Addons f...
CVE-2025-24618
- EPSS 0.5%
- Veröffentlicht 24.01.2025 18:15:37
- Zuletzt bearbeitet 23.04.2026 15:25:08
Missing Authorization vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ElementInvader Addons for Elemen...
CVE-2025-24578
- EPSS 0.37%
- Veröffentlicht 24.01.2025 18:15:34
- Zuletzt bearbeitet 23.04.2026 15:25:02
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows DOM-Based XSS.This issue affects ElementInvader Addon...
CVE-2025-22786
- EPSS 0.69%
- Veröffentlicht 15.01.2025 16:15:41
- Zuletzt bearbeitet 23.04.2026 15:23:36
Path Traversal: '.../...//' vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows PHP Local File Inclusion.This issue affects ElementInvader Addons for Elementor: from n/a through <= 1.2.6.
CVE-2024-12059
- EPSS 0.3%
- Veröffentlicht 12.12.2024 06:15:23
- Zuletzt bearbeitet 06.03.2025 19:54:57
The ElementInvader Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.3.1 via the eli_option_value shortcode. This makes it possible for authenticated attackers, with Cont...