VendorsWPDeveloperessential_addons_for_elementorall versions
Vulnerabilities

WPDeveloper Essential Addons for Elementor

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

55CVEs
CVE-2024-9993
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 6.1.12 - Authenticated(Contributor+) Stored Cross-Site Scripting via Event Calendar Widget
Published 2025-06-07 · Analyzed
6.4EPSS 0.002
CVE-2024-9994
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 6.1.12 - Authenticated(Contributor+) Stored Cross-Site Scripting via Pricing Table Widget
Published 2025-06-07 · Analyzed
6.4EPSS 0.002
CVE-2025-6244
Essential Addons for Elementor – Popular Elementor Templates and Widgets <= 6.1.19 - Authenticated (Contributor+) Stored Cross-Site Scripting via `Calendar` And `Business Reviews` Widgets
Published 2025-07-08 · Analyzed
6.4EPSS 0.002
CVE-2021-4446
Essential Addons for Elementor <= 4.6.4 - Missing Authorization
Published 2024-10-16 · Analyzed
6.3EPSS 0.003
CVE-2022-0683
Essential Addons for Elementor Lite <= 5.0.8 Reflected Cross-Site Scripting
Published 2022-02-24 · Modified
6.1EPSS 0.032
CVE-2024-8978
Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders <= 6.0.9 - Authenticated (Contributor+) Sensitive Information Exposure
Published 2024-11-15 · Analyzed
5.7EPSS 0.005
CVE-2021-24255
Essential Addons for Elementor < 4.5.4 - Contributor+ Stored Cross-Site Scripting (XSS)
Published 2021-05-05 · Modified
5.4EPSS 0.006
CVE-2024-1172
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 5.9.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Accordion
Published 2024-02-20 · Modified
5.4EPSS 0.005
CVE-2024-1171
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 5.9.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Filterable Gallery
Published 2024-02-20 · Modified
5.4EPSS 0.004
CVE-2024-0585
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 5.9.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image URl
Published 2024-02-05 · Modified
5.4EPSS 0.004
CVE-2023-3779
Essential Addons For Elementor <=5.8.1 - Unauthenticated MailChimp API Key Disclosure
Published 2023-07-20 · Modified
5.3EPSS 0.006
CVE-2024-3733
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 5.9.15 - Information Exposure
Published 2024-04-25 · Modified
5.3EPSS 0.005
CVE-2024-2974
Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 5.9.13 - Unauthenticated Sensitive Information Exposure
Published 2024-04-09 · Modified
5.3EPSS 0.005
CVE-2025-39589
WordPress Essential Addons for Elementor plugin <= 6.1.9 - Sensitive Data Exposure Vulnerability
Published 2025-04-16 · Modified
4.3EPSS 0.004
CVE-2025-64352
WordPress Essential Addons for Elementor plugin <= 6.2.4 - Broken Access Control vulnerability
Published 2025-10-31 · Modified
2.7EPSS 0.002
← Prev2 / 2