Vulnerability index

Browse CVEs

45 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Royal Elementor Addons MEDIUM 5.3
CVE-2024-0516

The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to unauthorized post metadata update due to a missing capability check on…

Fix: 1.3.88+
Fix from $1,600 2024-02-29
Royal Elementor Addons MEDIUM 6.4
CVE-2024-0442

The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via element URL parameters in all versions…

Fix: 1.3.88+
Fix from $1,600 2024-02-29
Royal Elementor Addons HIGH 7.5
CVE-2023-5922

The Royal Elementor Addons and Templates WordPress plugin before 1.3.81 does not ensure that users accessing posts via an AJAX action (and REST endpo…

Fix: 1.3.81+
Fix from $1,950 2024-01-16
Royal Elementor Addons CRITICAL 9.8
CVE-2023-5360EPSS 82%

The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated …

Fix: 1.3.79+
Fix from $2,300 2023-10-31
Royal Elementor Addons HIGH 8.8
CVE-2022-47175

Cross-Site Request Forgery (CSRF) vulnerability in P Royal Royal Elementor Addons and Templates plugin <= 1.3.75 versions.

Fix: after 1.3.75
Fix from $1,950 2023-10-06
Royal Elementor Addons MEDIUM 5.3
CVE-2023-3709

The Royal Elementor Addons plugin for WordPress is vulnerable to unauthenticated API key disclosure in versions up to, and including, 1.3.70 due to t…

Fix: after 1.3.70
Fix from $1,600 2023-07-18
Royal Elementor Addons HIGH 8.8
CVE-2022-4700

The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_activate_required_theme' AJAX action in vers…

Fix: after 1.3.59
Fix from $1,950 2023-01-10
Royal Elementor Addons HIGH 8.8
CVE-2022-4701

The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_activate_required_plugins' AJAX action in ve…

Fix: after 1.3.59
Fix from $1,950 2023-01-10
Royal Elementor Addons HIGH 8.1
CVE-2022-4703

The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_reset_previous_import' AJAX action in versio…

Fix: after 1.3.59
Fix from $1,950 2023-01-10
Royal Elementor Addons HIGH 8.1
CVE-2022-4704

The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_import_templates_kit' AJAX action in version…

Fix: after 1.3.59
Fix from $1,950 2023-01-10
Royal Elementor Addons MEDIUM 6.5
CVE-2022-4702

The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_fix_royal_compatibility' AJAX action in vers…

Fix: after 1.3.59
Fix from $1,600 2023-01-10
Royal Elementor Addons MEDIUM 6.5
CVE-2022-4707

The Royal Elementor Addons plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.3.59. This is due to …

Fix: after 1.3.59
Fix from $1,600 2023-01-10
Royal Elementor Addons MEDIUM 6.5
CVE-2022-4708

The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_save_template_conditions' AJAX action in ver…

Fix: after 1.3.59
Fix from $1,600 2023-01-10
Royal Elementor Addons MEDIUM 6.5
CVE-2022-4709

The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_import_library_template' AJAX action in vers…

Fix: after 1.3.59
Fix from $1,600 2023-01-10
Royal Elementor Addons MEDIUM 6.1
CVE-2022-4710

The Royal Elementor Addons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.3.59, due to due …

Fix: after 1.3.59
Fix from $1,600 2023-01-10