Wpmet
Wpmet Elements KIT Elementor Addons: vulnerabilidades y CVE
Wpmet Elements KIT Elementor Addons tiene 14 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE14
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-37255 | Media (5.3) | 0.36% | — | 1 nov 2024 | Missing Authorization vulnerability in Roxnor ElementsKit Elementor addons Lite elementskit-lite.This issue affects ElementsKit Elementor addons Lite: from n/a through <= 3.1.4. |
| CVE-2024-10091 | Media (5.4) | 0.32% | — | 26 oct 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Comparison Widget in all versions up to, and including, 3.2.9 due to insufficient input sanitization and… |
| CVE-2024-6455 | Media (5.3) | 0.40% | — | 18 jul 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 3.2.0 due to a missing capability checks on ekit_widgetarea_content function. This makes… |
| CVE-2023-39993 | Media (4.3) | 0.36% | — | 19 jun 2024 | Missing Authorization vulnerability in Wpmet Elements kit Elementor addons.This issue affects Elements kit Elementor addons: from n/a through 2.9.0. |
| CVE-2024-3650 | Media (5.4) | 0.42% | — | 2 may 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordion widget in all versions 3.0.7 through 3.1.2 due to insufficient input sanitization and output… |
| CVE-2024-3499 | Alta (8.8) | 1.1% | — | 2 may 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.0 via the generate_navigation_markup function of the Onepage Scroll module. This… |
| CVE-2024-32505 | Media (5.4) | 0.29% | — | 17 abr 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Roxnor ElementsKit Elementor addons Lite elementskit-lite.This issue affects ElementsKit Elementor addons Lite: from… |
| CVE-2024-2803 | Media (5.4) | 0.34% | — | 4 abr 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown widget in all versions up to, and including, 3.0.6 due to insufficient input sanitization and output… |
| CVE-2024-2047 | Alta (8.8) | 1.5% | — | 30 mar 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.0.6 via the render_raw function. This makes it possible for authenticated attackers,… |
| CVE-2024-1238 | Media (5.4) | 0.35% | — | 30 mar 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button ID parameter in all versions up to, and including, 3.0.6 due to insufficient input sanitization and… |
| CVE-2024-2042 | Media (5.4) | 0.47% | — | 16 mar 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordion widget in all versions up to, and including, 3.0.5 due to insufficient input sanitization and… |
| CVE-2024-1239 | Media (5.4) | 0.38% | — | 16 mar 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blog post read more button in all versions up to, and including, 3.0.4 due to insufficient input sanitization… |
| CVE-2023-6582 | Media (5.3) | 0.52% | — | 11 ene 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.0.3 via the ekit_widgetarea_content function. This makes it possible for… |
| CVE-2021-24258 | Media (5.4) | 0.63% | — | 5 may 2021 | The Elements Kit Lite and Elements Kit Pro WordPress Plugins before 2.2.0 have a number of widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a… |
Otros productos de Wpmet
Metform Elementor Contact Form Builder · 23Elementskit · 11WP Ultimate Review · 10Elementskit Elementor Addons · 10Fundengine · 8Gutenkit · 7WP Social Login AND Register Social Counter · 5Elementskit Elementor Addons Lite · 2Elementskit Lite · 2WP Fundraising Donation AND Crowdfunding Platform · 1Shopengine · 1Metform · 1