VendorsIdeaBoxpowerpack_addons_for_elementorany version
Vulnerabilities

IdeaBox PowerPack Addons For Elementor any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2024-3668
PowerPack Pro for Elementor <= 2.10.17 - Authenticated (Contributor+) Privilege Escalation
Published 2024-06-08 · Modified
8.8EPSS 0.004
CVE-2023-49739
WordPress PowerPack Pro for Elementor plugin <= 2.9.23 - Reflected Cross Site Scripting (XSS) vulnerability
Published 2023-12-14 · Modified
7.1EPSS 0.004
CVE-2024-1411
PowerPack Addons for Elementor <= 2.7.15 - Authenticated (Contributor+) Stored Cross-Site Scripting via Twitter Buttons Widget
Published 2024-02-20 · Modified
6.4EPSS 0.004
CVE-2024-5787
PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) <= 2.7.20 - Authenticated (Contributor+) Stored Cross-Site Scripting via Link Effects Widget
Published 2024-06-13 · Modified
6.4EPSS 0.004
CVE-2024-2492
PowerPack Addons for Elementor <= 2.7.18 - Authenticated (Contributor+) Stored Cross-Site Scripting via Twitter Tweet Widget
Published 2024-04-09 · Modified
6.4EPSS 0.004
CVE-2024-2491
PowerPack Addons for Elementor <= 2.7.17 - Authenticated (Contributor+) Stored Cross-Site Scripting via *_html_tag*
Published 2024-03-30 · Modified
6.4EPSS 0.003
CVE-2024-5327
PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) <= 2.7.19 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting
Published 2024-05-30 · Modified
6.4EPSS 0.003
CVE-2021-25027
PowerPack Addons for Elementor < 2.6.2 - Reflected Cross-Site Scripting
Published 2022-01-03 · Modified
6.1EPSS 0.009
CVE-2021-24263
PowerPack Addons for Elementor < 2.3.2 - Contributor+ Stored XSS
Published 2021-05-05 · Modified
5.4EPSS 0.007
CVE-2024-1055
PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) <= 2.7.14 - Authenticated (Contributor+) Stored Cross-Site Scripting
Published 2024-02-07 · Modified
5.4EPSS 0.004
CVE-2023-6984
PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) <= 2.7.13 - Cross-Site Request Forgery
Published 2024-01-03 · Modified
5.3EPSS 0.002