Brainstormforce

Elementor Header & Footer Builder

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.18%
  • Veröffentlicht 23.12.2024 05:15:05
  • Zuletzt bearbeitet 29.01.2025 20:46:12

The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘size’ parameter in all versions up to, and including, 1.6.46 due to insufficient input sanitization and output escaping. This makes it po...

  • EPSS 0.17%
  • Veröffentlicht 08.11.2024 12:15:14
  • Zuletzt bearbeitet 13.11.2024 20:01:05

The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 1.6.45 due to insufficient input sanitization and output escaping. This makes ...

  • EPSS 0.35%
  • Veröffentlicht 24.10.2024 09:15:02
  • Zuletzt bearbeitet 29.01.2025 17:00:56

The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Information Disclosure in all versions up to, and including, 1.6.43 via the hfe_template shortcode. This makes it possible for authenticated attackers, with Contributor-level...

  • EPSS 0.23%
  • Veröffentlicht 24.05.2024 05:15:09
  • Zuletzt bearbeitet 31.01.2025 15:00:47

The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the size attribute in all versions up to, and including, 1.6.26 due to insufficient input sanitization and output escaping. This makes it poss...

  • EPSS 0.17%
  • Veröffentlicht 16.05.2024 21:16:08
  • Zuletzt bearbeitet 29.01.2025 21:57:27

The Elementor Header & Footer Builder for WordPress is vulnerable to HTML Injection in all versions up to, and including, 1.6.26 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with auth...

  • EPSS 0.27%
  • Veröffentlicht 16.05.2024 11:15:49
  • Zuletzt bearbeitet 30.01.2025 16:01:17

The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘hfe_svg_mime_types’ function in versions up to, and including, 1.6.28 due to insufficient input sanitization and output escaping. This ma...

  • EPSS 0.2%
  • Veröffentlicht 13.03.2024 16:15:18
  • Zuletzt bearbeitet 05.02.2025 18:13:17

The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the flyout_layout attribute in all versions up to, and including, 1.6.24 due to insufficient input sanitization and output escaping. This make...