CVE-2024-7092
- EPSS 0.44%
- Veröffentlicht 13.08.2024 05:15:14
- Zuletzt bearbeitet 08.01.2025 20:53:45
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘no_more_items_text’ parameter in all versions up to, and including, 5.9.27 ...
CVE-2024-39649
- EPSS 0.3%
- Veröffentlicht 01.08.2024 22:15:26
- Zuletzt bearbeitet 23.04.2026 15:18:49
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lite.This issue affects Essential Addons for Elementor: from n/a through <...
CVE-2024-5189
- EPSS 0.43%
- Veröffentlicht 11.06.2024 14:15:12
- Zuletzt bearbeitet 08.04.2026 19:21:52
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘custom_js’ parameter in all versions up to, and including, 5.9.23 due to in...
CVE-2024-5612
- EPSS 0.26%
- Veröffentlicht 07.06.2024 05:15:50
- Zuletzt bearbeitet 08.04.2026 18:22:10
The Essential Addons for Elementor Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘eael_lightbox_open_btn_icon’ parameter within the Lightbox & Modal widget in all versions up to, and including, 5.8.15 due to insufficie...
CVE-2024-5188
- EPSS 0.32%
- Veröffentlicht 06.06.2024 11:15:49
- Zuletzt bearbeitet 08.04.2026 18:22:00
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'get_manual_calendar_events' function in all versions up to, and including, ...
CVE-2024-34764
- EPSS 0.14%
- Veröffentlicht 03.06.2024 12:15:09
- Zuletzt bearbeitet 02.02.2026 11:15:53
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Collision with another CVE ID.
CVE-2024-5073
- EPSS 0.33%
- Veröffentlicht 30.05.2024 07:15:39
- Zuletzt bearbeitet 08.04.2026 19:21:50
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Twitter Feed component in all versions up to, and including, 5.9.21 due to i...
CVE-2024-5086
- EPSS 0.26%
- Veröffentlicht 29.05.2024 08:15:34
- Zuletzt bearbeitet 08.04.2026 19:21:50
The Essential Addons for Elementor PRO – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Team Member Carousel widget in all Pro versions up to, and incl...
CVE-2023-41955
- EPSS 0.63%
- Veröffentlicht 17.05.2024 07:15:59
- Zuletzt bearbeitet 06.03.2025 14:25:09
Improper Privilege Management vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation.This issue affects Essential Addons for Elementor: from n/a through 5.8.8.
CVE-2024-4624
- EPSS 0.44%
- Veröffentlicht 14.05.2024 16:17:35
- Zuletzt bearbeitet 08.04.2026 19:21:43
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugins for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘eael_ext_toc_title_tag’ parameter in versions up to, and including, 5.9.20...