| CVE-2026-23543 | WordPress Essential Addons for Elementor plugin <= 6.5.5 - Broken Access Control vulnerability | WPDeveloper | Essential Addons for Elementor | Medium | 5.3 | 2026-02-19 08:26:49 | Deep Dive |
| CVE-2026-1512 | Essential Addons for Elementor <= 6.5.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Info Box Widget | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 6.4 | 2026-02-14 09:49:39 | Deep Dive |
| CVE-2026-1004 | Essential Addons for Elementor <= 6.5.5 - Missing Authorization to Unauthenticated Sensitive Information Exposure | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 5.3 | 2026-01-16 08:23:38 | Deep Dive |
| CVE-2025-69092 | WordPress Essential Addons for Elementor plugin <= 6.5.3 - Cross Site Scripting (XSS) vulnerability | WPDeveloper | Essential Addons for Elementor | 中危 | - | 2025-12-30 10:47:58 | Deep Dive |
| CVE-2025-13977 | Essential Addons for Elementor – Popular Elementor Templates & Widgets <= 6.5.3 - Authenticated (Contributor+) Stored Cross-Site Scripting | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 6.4 | 2025-12-17 03:20:20 | Deep Dive |
| CVE-2025-64352 | WordPress Essential Addons for Elementor plugin <= 6.2.4 - Broken Access Control vulnerability | WPDeveloper | Essential Addons for Elementor | Low | 2.7 | 2025-10-31 11:42:23 | Deep Dive |
| CVE-2025-8451 | Essential Addons for Elementor – Popular Elementor Templates and Widgets <= 6.2.2 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'data-gallery-items' | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 6.4 | 2025-08-15 06:40:42 | Deep Dive |
| CVE-2025-6244 | Essential Addons for Elementor – Popular Elementor Templates and Widgets <= 6.1.19 - Authenticated (Contributor+) Stored Cross-Site Scripting via `Calendar` And `Business Reviews` Widgets | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 6.4 | 2025-07-08 01:43:47 | Deep Dive |
| CVE-2024-5647 | Multiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Magnific Popups JavaScript Library | blossomthemes | BlossomThemes Social Feed | Medium | 6.4 | 2025-07-03 09:22:19 | Deep Dive |
| CVE-2024-9993 | Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 6.1.12 - Authenticated(Contributor+) Stored Cross-Site Scripting via Event Calendar Widget | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 6.4 | 2025-06-07 11:17:51 | Deep Dive |
| CVE-2024-9994 | Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders <= 6.1.12 - Authenticated(Contributor+) Stored Cross-Site Scripting via Pricing Table Widget | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 6.4 | 2025-06-07 11:17:50 | Deep Dive |
| CVE-2025-24752 | WordPress Essential Addons for Elementor plugin <= 6.0.14 - Reflected Cross Site Scripting (XSS) vulnerability | WPDeveloper | Essential Addons for Elementor | High | 7.1 | 2025-04-17 15:48:11 | Deep Dive |
| CVE-2025-39589 | WordPress Essential Addons for Elementor plugin <= 6.1.9 - Sensitive Data Exposure Vulnerability | WPDeveloper | Essential Addons for Elementor | Medium | 4.3 | 2025-04-16 12:44:22 | Deep Dive |
| CVE-2025-39590 | WordPress Essential Addons for Elementor plugin <= 6.1.9 - Cross Site Scripting (XSS) Vulnerability | WPDeveloper | Essential Addons for Elementor | Medium | 6.5 | 2025-04-16 12:44:21 | Deep Dive |
| CVE-2024-56063 | WordPress Essential Addons for Elementor plugin <= 6.0.7 - Cross Site Scripting (XSS) vulnerability | WPDeveloper | Essential Addons for Elementor | Medium | 6.5 | 2024-12-31 23:06:31 | Deep Dive |
| CVE-2024-8978 | Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders <= 6.0.9 - Authenticated (Contributor+) Sensitive Information Exposure | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 5.7 | 2024-11-15 09:29:40 | Deep Dive |
| CVE-2024-8979 | Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders <= 6.0.9 - Authenticated (Author+) Sensitive Information Exposure to Privilege Escalation | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | High | 8.0 | 2024-11-15 09:29:39 | Deep Dive |
| CVE-2024-8961 | Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders <= 6.0.7 - Authenticated (Contributor+) Stored Cross-Site Scripting | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | Medium | 6.4 | 2024-11-15 06:48:03 | Deep Dive |
| CVE-2024-51674 | WordPress Sastra Essential Addons for Elementor plugin <= 1.0.5 - Cross Site Scripting (XSS) vulnerability | Fast Themes | Sastra Essential Addons for Elementor | Medium | 6.5 | 2024-11-09 13:02:39 | Deep Dive |
| CVE-2024-50457 | WordPress Qode Essential Addons plugin <= 1.6.3 - Local File Inclusion vulnerability | Qode | Qode Essential Addons | High | 7.5 | 2024-10-28 19:49:54 | Deep Dive |