VendorsRoyal Elementor Addonsroyal_elementor_addonsany version
Vulnerabilities

Royal Elementor Addons Royal Elementor Addons any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

58CVEs
CVE-2024-1500
Royal Elementor Addons and Templates <= 1.3.91 - Authenticated (Contributor+) Stored Cross-Site Scripting via Logo Widget
Published 2024-03-07 · Modified
5.4EPSS 0.004
CVE-2024-3887
Royal Elementor Addons and Templates <= 1.3.974 - Authenticated (Contributor+) Stored Cross-Site Scripting via Form Builder Widget
Published 2024-05-16 · Modified
5.4EPSS 0.003
CVE-2024-12120
Royal Elementor Addons and Templates <= 1.7.1017 - Authenticated (Contributor+) Stored Cross-Site Scripting
Published 2025-05-07 · Analyzed
5.4EPSS 0.003
CVE-2023-3709
Royal Elementor Addons <=1.3.70 - Unauthenticated MailChimp API Key Disclosure
Published 2023-07-18 · Modified
5.3EPSS 0.006
CVE-2024-0516
Royal Elementor Addons and Templates <= 1.3.87 - Missing Authorization via wpr_update_form_action_meta
Published 2024-02-20 · Modified
5.3EPSS 0.002
CVE-2025-26990
WordPress Royal Elementor Addons plugin <= 1.7.1006 - Server Side Request Forgery (SSRF) vulnerability
Published 2025-04-15 · Modified
4.9EPSS 0.002
CVE-2022-4711
Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Menu Settings Update
Published 2023-01-10 · Modified
4.3EPSS 0.007
CVE-2022-4705
Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Template Activation
Published 2023-01-10 · Modified
4.3EPSS 0.006
CVE-2024-7417
Royal Elementor Addons and Templates <= 1.3.986 - Authenticated (Subscriber+) Private Post Disclosure
Published 2024-10-17 · Analyzed
4.3EPSS 0.004
CVE-2024-10798
Royal Elementor Addons and Templates <= 1.7.1003 - Authenticated (Contributor+) Post Disclosure
Published 2024-11-28 · Analyzed
4.3EPSS 0.004
CVE-2024-56227
WordPress Royal Elementor Addons plugin <= 1.7.1001 - Broken Access Control vulnerability
Published 2024-12-31 · Modified
4.3EPSS 0.003
CVE-2022-4103
Royal Elementor Addons < 1.3.56 - Subscriber+ Arbitrary Post Creation
Published 2023-01-09 · Modified
4.3EPSS 0.003
CVE-2024-0514
Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via add_to_compare
Published 2024-02-20 · Modified
4.3EPSS 0.002
CVE-2024-0512
Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via add_to_wishlist
Published 2024-02-20 · Modified
4.3EPSS 0.002
CVE-2024-0513
Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via remove_from_wishlist
Published 2024-02-20 · Modified
4.3EPSS 0.002
CVE-2024-0515
Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via remove_from_compare
Published 2024-02-20 · Modified
4.3EPSS 0.002
CVE-2024-0511
Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via wpr_update_form_action_meta
Published 2024-02-08 · Modified
4.3EPSS 0.002
CVE-2022-4102
Royal Elementor Addons < 1.3.56 - Subscriber+ Arbitrary Post Deletion
Published 2023-01-09 · Modified
3.1EPSS 0.003
← Prev2 / 2