Exclusive Addons for Elementor

30 known CVEs 50K+ active installs

Scan My Site Free

UNKNOWN: 30
Known Vulnerabilities 30
CVE-2024-49292 UNKNOWN EPSS 0.2%
Published 2024-10-17 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor exclusive-addons-for-elementor allows Stored XSS.This issu
CVE-2024-49292 UNKNOWN EPSS 0.2%
Published 2024-10-17 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor exclusive-addons-for-elementor allows Stored XSS.This issu
CVE-2024-49292 UNKNOWN EPSS 0.2%
Published 2024-10-17 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor exclusive-addons-for-elementor allows Stored XSS.This issu
CVE-2024-49292 UNKNOWN EPSS 0.2%
Published 2024-10-17 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor exclusive-addons-for-elementor allows Stored XSS.This issu
CVE-2024-5332 UNKNOWN EPSS 0.2%
Published 2024-06-26 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Card widget in all versions up to, and including, 2.6.9.8 due to insufficient inpu
CVE-2024-5332 UNKNOWN EPSS 0.2%
Published 2024-06-26 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Card widget in all versions up to, and including, 2.6.9.8 due to insufficient inpu
CVE-2024-4618 UNKNOWN EPSS 0.3%
Published 2024-05-15 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Team Member widget in all versions up to, and including, 2.6.9.6 due to insufficient input
CVE-2024-4618 UNKNOWN EPSS 0.3%
Published 2024-05-15 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Team Member widget in all versions up to, and including, 2.6.9.6 due to insufficient input
CVE-2024-3985 UNKNOWN EPSS 0.4%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Call to Action widget in all versions up to, and including, 2.6.9.3 due to insuffi
CVE-2024-3985 UNKNOWN EPSS 0.4%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Call to Action widget in all versions up to, and including, 2.6.9.3 due to insuffi
CVE-2024-3489 UNKNOWN EPSS 0.4%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the Countdown Expired Title in all versions up to, and including, 2.6.9.4 due to insufficien
CVE-2024-3489 UNKNOWN EPSS 0.4%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the Countdown Expired Title in all versions up to, and including, 2.6.9.4 due to insufficien
CVE-2024-2751 UNKNOWN EPSS 0.2%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘exad_infobox_animating_mask_style’ parameter in all versions up to, and including, 2.6.9.2
CVE-2024-2751 UNKNOWN EPSS 0.2%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘exad_infobox_animating_mask_style’ parameter in all versions up to, and including, 2.6.9.2
CVE-2024-2750 UNKNOWN EPSS 0.2%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribute of the Button widget in all versions up to, and including, 2.6.9.3 due to ins
CVE-2024-2750 UNKNOWN EPSS 0.2%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribute of the Button widget in all versions up to, and including, 2.6.9.3 due to ins
CVE-2024-2503 UNKNOWN EPSS 0.4%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid Widget in all versions up to, and including, 2.6.9.2 due to insufficient input sa
CVE-2024-2503 UNKNOWN EPSS 0.4%
Published 2024-05-02 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid Widget in all versions up to, and including, 2.6.9.2 due to insufficient input sa
CVE-2024-2028 UNKNOWN EPSS 0.4%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Covid-19 Stats Widget in all versions up to, and including, 2.6.9 due to insufficient input
CVE-2024-2028 UNKNOWN EPSS 0.4%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Covid-19 Stats Widget in all versions up to, and including, 2.6.9 due to insufficient input
CVE-2024-1414 UNKNOWN EPSS 0.4%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Call To Action widget in all versions up to, and including, 2.6.9 due to insufficient input
CVE-2024-1414 UNKNOWN EPSS 0.4%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Call To Action widget in all versions up to, and including, 2.6.9 due to insufficient input
CVE-2024-1413 UNKNOWN EPSS 0.4%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown Timer widget in all versions up to, and including, 2.6.9 due to insufficient inpu
CVE-2024-1413 UNKNOWN EPSS 0.4%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown Timer widget in all versions up to, and including, 2.6.9 due to insufficient inpu
CVE-2024-1234 UNKNOWN EPSS 0.7%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via data attribute in all versions up to, and including, 2.6.9 due to insufficient input sanitizati
CVE-2024-1234 UNKNOWN EPSS 0.7%
Published 2024-03-13 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via data attribute in all versions up to, and including, 2.6.9 due to insufficient input sanitizati
CVE-2024-0823 UNKNOWN EPSS 0.4%
Published 2024-02-05 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Link To' url in carousels in all versions up to, and including, 2.6.8 due to insufficient
CVE-2024-0823 UNKNOWN EPSS 0.4%
Published 2024-02-05 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Link To' url in carousels in all versions up to, and including, 2.6.8 due to insufficient
CVE-2024-0824 UNKNOWN EPSS 0.2%
Published 2024-01-27 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Link Anything functionality in all versions up to, and including, 2.6.8 due to insufficient
CVE-2024-0824 UNKNOWN EPSS 0.2%
Published 2024-01-27 · Affected: *
The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Link Anything functionality in all versions up to, and including, 2.6.8 due to insufficient

Is Exclusive Addons for Elementor running on your site?

A free scan detects your plugins and flags any that match these CVEs.

Scan My Site Free