Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Jeg Elementor Kit MEDIUM 5.4
CVE-2024-10308

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's JKit - Countdown widget in all versions up t…

Fix: 2.6.10+
Fix from $1,600 2024-11-26
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-47390

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jegtheme Jeg Elementor Kit jeg-elementor-kit al…

Fix: 2.6.9+
Fix from $1,600 2024-10-05
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-6804

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.…

Fix: 2.6.8+
Fix from $1,600 2024-08-27
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-4479

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the sg_general_toggle_tab_enable and sg_accordion_style a…

Fix: 2.6.6+
Fix from $1,600 2024-06-15
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-3819

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's JKit - Banner widget in all versions up to, …

Fix: 2.6.5+
Fix from $1,600 2024-05-02
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-3161

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown widget's attributes in all versions up to, …

Fix: 2.6.5+
Fix from $1,600 2024-05-02
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-0334

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the custom attribute of a link in several Elementor widge…

Fix: 2.6.5+
Fix from $1,600 2024-05-01
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-32721

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jegtheme Jeg Elementor Kit allows Stored XSS.Th…

Fix: 2.6.4+
Fix from $1,600 2024-04-24
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-3162

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Testimonial Widget Attributes in all versions up to, …

Fix: 2.6.4+
Fix from $1,600 2024-04-03
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-1327

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's image box widget in all versions up to, and …

Fix: 2.6.4+
Fix from $1,600 2024-04-03
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-1326

The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTML Tag attributes in all versions up to, and including,…

Fix: 2.6.3+
Fix from $1,600 2024-03-21
Jeg Elementor Kit MEDIUM 5.4
CVE-2024-29101

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jegtheme Jeg Elementor Kit allows Stored XSS.Th…

Fix: 2.6.3+
Fix from $1,600 2024-03-19
Jeg Elementor Kit HIGH 7.5
CVE-2022-3805

The Jeg Elementor Kit plugin for WordPress is vulnerable to authorization bypass in various functions used to update the plugin settings in versions …

Fix: 2.5.7+
Fix from $1,950 2022-12-22