Vulnerability index

Browse CVEs

40 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Premium Addons For Elementor MEDIUM 5.3
CVE-2025-68494

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Leap13 Premium Addons for Elementor premium-addons-for-el…

Fix: 4.11.54+
Fix from $1,600 2025-12-24
Premium Addons For Elementor MEDIUM 5.3
CVE-2025-14155

The Premium Addons for Elementor – Powerful Elementor Templates & Widgets plugin for WordPress is vulnerable to unauthorized access of data due to a …

Fix: 4.11.54+
Fix from $1,600 2025-12-23
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-11937

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's linkURL in the Mobile Menu elemen…

Fix: 4.10.70+
Fix from $1,600 2025-07-04
Premium Addons For Elementor MEDIUM 5.4
CVE-2025-4774

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the data-countdown attribute of Countdown widg…

Fix: 4.11.9+
Fix from $1,600 2025-06-10
Premium Addons For Elementor HIGH 8.8
CVE-2024-56225

Missing Authorization vulnerability in Leap13 Premium Addons for Elementor premium-addons-for-elementor allows Accessing Functionality Not Properly C…

Fix: 4.10.57+
Fix from $1,950 2024-12-31
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-10266

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Video Box widget in all versions …

Fix: 4.10.61+
Fix from $1,600 2024-10-29
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-8681

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Media Grid widget in all versions…

Fix: 4.10.53+
Fix from $1,600 2024-09-27
Premium Blocks For Gutenburg MEDIUM 5.4
CVE-2024-37519

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Blocks – Gutenberg Blocks for Wo…

Fix: 2.1.28+
Fix from $1,600 2024-07-21
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-37922

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Addons for Elementor premium-add…

Fix: 4.10.35+
Fix from $1,600 2024-07-20
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-6495

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Animated Text widget in all versi…

Fix: 4.10.37+
Fix from $1,600 2024-07-12
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-6340

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown widget in all versions …

Fix: 4.10.36+
Fix from $1,600 2024-07-03
Premium Addons HIGH 8.8
CVE-2023-37869

Missing Authorization vulnerability in Premium Addons Premium Addons PRO.This issue affects Premium Addons PRO: from n/a through 2.9.0.

Fix: 2.9.1+
Fix from $1,950 2024-06-19
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-5553

The Premium Addons for Elementor plugin for WordPress is vulnerable to DOM-Based Stored Cross-Site Scripting via several parameters in all versions u…

Fix: 4.10.34+
Fix from $1,600 2024-06-12
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-4376

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Fancy Text widget in all versions…

Fix: 4.10.32+
Fix from $1,600 2024-05-31
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-4379

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Global Tooltip widget in all vers…

Fix: 4.10.32+
Fix from $1,600 2024-05-31
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-4378

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's menu and shape widgets in all ver…

Fix: 4.10.32+
Fix from $1,600 2024-05-23
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-4203

The Premium Addons Pro for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the maps widget in all versions up to, and…

Fix: 4.10.31+
Fix from $1,600 2024-05-02
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-3885

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the subcontainer value parameter in all versio…

Fix: 4.10.29+
Fix from $1,600 2024-05-02
Premium Addons For Elementor MEDIUM 6.4
CVE-2024-3647

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's post ticker widget in all version…

Fix: 4.10.29+
Fix from $1,600 2024-05-02
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-32791

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Addons for Elementor premium-add…

Fix: 4.10.26+
Fix from $1,600 2024-04-24
Premium Addons For Elementor MEDIUM 6.5
CVE-2024-31278

Insertion of Sensitive Information Into Sent Data vulnerability in Leap13 Premium Addons for Elementor premium-addons-for-elementor.This issue affect…

Fix: after 4.10.22
Fix from $1,600 2024-04-10
Premium Addons For Elementor MEDIUM 6.4
CVE-2024-2665

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's button in all versions up to, and…

Fix: 4.10.28+
Fix from $1,600 2024-04-10
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-2666

The Premium Addons for Elementor plugin for WordPress is vulnerable to DOM-Based Stored Cross-Site Scripting via the plugin's Bullet List Widget in a…

Fix: 4.10.25+
Fix from $1,600 2024-04-10
Premium Addons For Elementor MEDIUM 6.4
CVE-2024-2664

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown Widget in all versions …

Fix: 4.10.25+
Fix from $1,600 2024-04-10
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-0376

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Wrapper Link Widget in all versio…

Fix: after 4.10.16
Fix from $1,600 2024-04-09
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-29106

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Addons for Elementor allows Stor…

Fix: after 4.10.16
Fix from $1,600 2024-03-19
Premium Addons For Elementor MEDIUM 5.4
CVE-2024-2399

The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, an…

Fix: 4.10.24+
Fix from $1,600 2024-03-15
Premium Addons MEDIUM 5.4
CVE-2024-2237

The Premium Addons PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Global Badge module in all versions up to, and inclu…

Fix: 2.9.13+
Fix from $1,600 2024-03-13
Premium Addons MEDIUM 5.4
CVE-2024-2238

The Premium Addons PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Mouse Cursor module in all versions up to, an…

Fix: 2.9.13+
Fix from $1,600 2024-03-13
Premium Addons MEDIUM 5.4
CVE-2024-2239

The Premium Addons PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Premium Magic Scroll module in all versions up to, a…

Fix: 2.9.13+
Fix from $1,600 2024-03-13