| CVE-2025-64274 | WordPress WPKoi Templates for Elementor plugin <= 3.4.4 - Broken Access Control vulnerability | wpkoithemes | WPKoi Templates for Elementor | Medium | 4.3 | 2025-11-13 09:24:31 | Deep Dive |
| CVE-2025-11997 | Document Pro Elementor – Documentation & Knowledge Base <= 1.0.9 - Unauthenticated Information Exposure | ngothoai | Document Pro Elementor – Documentation & Knowledge Base | Medium | 5.3 | 2025-11-11 03:30:40 | Deep Dive |
| CVE-2025-12837 | aThemes Addons for Elementor <= 1.1.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Call To Action Widget | smub | aThemes Addons for Elementor | Medium | 6.4 | 2025-11-08 09:28:11 | Deep Dive |
| CVE-2025-6327 | WordPress King Addons for Elementor plugin <= 51.1.36 - Arbitrary File Upload vulnerability | KingAddons.com | King Addons for Elementor | Critical | 10.0 | 2025-11-06 15:56:07 | Deep Dive |
| CVE-2025-6325 | WordPress King Addons for Elementor plugin <= 51.1.36 - Privilege Escalation vulnerability | KingAddons.com | King Addons for Elementor | Critical | 9.8 | 2025-11-06 15:56:06 | Deep Dive |
| CVE-2025-62041 | WordPress TheGem (Elementor) theme <= 5.10.5.1 - Cross Site Scripting (XSS) vulnerability | CodexThemes | TheGem (Elementor) | High | 7.1 | 2025-11-06 15:55:39 | Deep Dive |
| CVE-2025-62012 | WordPress TheGem (Elementor) theme <= 5.10.5 - Cross Site Scripting (XSS) vulnerability | CodexThemes | TheGem (Elementor) | Medium | 6.5 | 2025-11-06 15:55:23 | Deep Dive |
| CVE-2025-11820 | Graphina – Elementor Charts and Graphs <= 3.1.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Chart Widgets | iqonicdesign | Graphina – Charts and Graphs For Elementor | Medium | 6.4 | 2025-11-05 09:27:39 | Deep Dive |
| CVE-2025-10873 | Elementinvader Addons for Elementor < 1.4.1 – Unauthenticated Arbitrary Email Sending | Unknown | ElementInvader Addons for Elementor | 中危 | - | 2025-11-05 06:00:07 | Deep Dive |
| CVE-2025-12493 | ShopLentor <= 3.2.5 - Unauthenticated Local PHP File Inclusion via 'load_template' | devitemsllc | ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin | Critical | 9.8 | 2025-11-04 11:19:27 | Deep Dive |
| CVE-2025-10896 | Multiple Plugins <= Multiple Versions - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Upload | litonice13 | Image Comparison Addon for Elementor | High | 8.8 | 2025-11-04 04:27:13 | Deep Dive |
| CVE-2025-64361 | WordPress Consulting Elementor Widgets plugin <= 1.4.2 - Cross Site Scripting (XSS) vulnerability | StylemixThemes | Consulting Elementor Widgets | Medium | 6.5 | 2025-10-31 11:42:33 | Deep Dive |
| CVE-2025-64360 | WordPress Consulting Elementor Widgets plugin <= 1.4.2 - Local File Inclusion vulnerability | StylemixThemes | Consulting Elementor Widgets | High | 7.5 | 2025-10-31 11:42:32 | Deep Dive |
| CVE-2025-64352 | WordPress Essential Addons for Elementor plugin <= 6.2.4 - Broken Access Control vulnerability | WPDeveloper | Essential Addons for Elementor | Low | 2.7 | 2025-10-31 11:42:23 | Deep Dive |
| CVE-2025-8489💣 | King Addons for Elementor – Free Elements, Widgets, Templates, and Features for Elementor 24.12.92 - 51.1.14 - Unauthenticated Privilege Escalation EPSS 0.49 | kingaddons | King Addons for Elementor – 4,000+ ready Elementor sections, 650+ templates, 70+ FREE widgets for Elementor | Critical | 9.8 | 2025-10-31 06:42:55 | Deep Dive |
| CVE-2025-64210 | WordPress Masterstudy Elementor Widgets plugin <= 1.2.4 - Broken Access Control vulnerability | StylemixThemes | Masterstudy Elementor Widgets | Medium | 5.4 | 2025-10-29 08:38:08 | Deep Dive |
| CVE-2025-64211 | WordPress Masterstudy Elementor Widgets plugin <= 1.2.4 - Broken Access Control vulnerability | StylemixThemes | Masterstudy Elementor Widgets | Medium | 5.3 | 2025-10-29 08:38:08 | Deep Dive |
| CVE-2025-62923 | WordPress Marquee Addons for Elementor plugin <= 3.8.2 - Cross Site Scripting (XSS) vulnerability | Debuggers Studio | Marquee Addons for Elementor | Medium | 6.5 | 2025-10-27 01:33:58 | Deep Dive |
| CVE-2025-62889 | WordPress King Addons for Elementor plugin <= 51.1.61 - Broken Access Control vulnerability | KingAddons.com | King Addons for Elementor | Medium | 6.5 | 2025-10-27 01:33:46 | Deep Dive |
| CVE-2025-62887 | WordPress King Addons for Elementor plugin <= 51.1.61 - Cross Site Scripting (XSS) vulnerability | KingAddons.com | King Addons for Elementor | Medium | 6.5 | 2025-10-27 01:33:45 | Deep Dive |