| CVE-2025-8150 | Events Addon for Elementor <= 2.2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Typewriter and Countdown Widgets | nicheaddons | Events Addon for Elementor | Medium | 6.4 | 2025-08-29 08:25:54 | Deep Dive |
| CVE-2025-8212 | Medical Addon for Elementor <= 1.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Typewriter Widget | nicheaddons | Medical Addon for Elementor | Medium | 6.4 | 2025-08-02 07:24:22 | Deep Dive |
| CVE-2024-13854 | Education Addon for Elementor <= 1.3.1 - Authenticated (Contributor+) Insecure Direct Object Reference via naedu_elementor_template Shortcode | nicheaddons | Education Addon for Elementor | Medium | 4.3 | 2025-02-19 07:32:09 | Deep Dive |
| CVE-2024-12046 | Medical Addon for Elementor <= 1.6.2 - Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Information Exposure via Shortcode | nicheaddons | Medical Addon for Elementor | Medium | 4.3 | 2025-02-04 07:21:01 | Deep Dive |
| CVE-2024-12061 | Events Addon for Elementor <= 2.2.3 - Authenticated (Contributor+) Post Disclosure | nicheaddons | Events Addon for Elementor | Medium | 4.3 | 2024-12-18 03:22:07 | Deep Dive |
| CVE-2024-54316 | WordPress Restaurant & Cafe Addon for Elementor plugin <= 1.5.8 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Restaurant & Cafe Addon for Elementor | Medium | 6.5 | 2024-12-13 14:25:24 | Deep Dive |
| CVE-2024-54315 | WordPress Events Addon for Elementor plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Events Addon for Elementor | Medium | 6.5 | 2024-12-13 14:25:23 | Deep Dive |
| CVE-2024-54314 | WordPress Primary Addon for Elementor plugin <= 1.6.0 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Primary Addon for Elementor | Medium | 6.5 | 2024-12-13 14:25:23 | Deep Dive |
| CVE-2023-47826 | WordPress Restaurant & Cafe Addon for Elementor plugin <= 1.5.3 - Broken Access Control vulnerability | nicheaddons | Restaurant & Cafe Addon for Elementor | Medium | 6.5 | 2024-12-09 11:30:41 | Deep Dive |
| CVE-2024-12062 | Charity Addon for Elementor <= 1.3.3 - Authenticated (Contributor+) Post Disclosure | nicheaddons | Charity Addon for Elementor | Medium | 4.3 | 2024-12-03 09:32:01 | Deep Dive |
| CVE-2024-10780 | Restaurant & Cafe Addon for Elementor <= 1.5.9 - Authenticated (Contributor+) Post Disclosure | nicheaddons | Restaurant & Cafe Addon for Elementor | Medium | 4.3 | 2024-11-28 09:47:12 | Deep Dive |
| CVE-2024-10670 | Primary Addon for Elementor <= 1.6.2 - Authenticated (Contributor+) Post Disclosure | nicheaddons | Primary Addon for Elementor | Medium | 4.3 | 2024-11-28 09:47:11 | Deep Dive |
| CVE-2024-51938 | WordPress Charity Addon for Elementor plugin <= 1.3.2 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Charity Addon for Elementor | Medium | 6.5 | 2024-11-19 16:30:48 | Deep Dive |
| CVE-2024-51581 | WordPress Restaurant & Cafe Addon for Elementor plugin <= 1.5.6 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Restaurant & Cafe Addon for Elementor | Medium | 6.5 | 2024-11-10 09:05:47 | Deep Dive |
| CVE-2024-51585 | WordPress Sales Page Addon plugin <= 1.4.5 - Stored Cross Site Scripting (XSS) vulnerability | nicheaddons | Sales Page Addon – Elementor & Beaver Builder | Medium | 6.5 | 2024-11-09 14:59:25 | Deep Dive |
| CVE-2024-49259 | WordPress Primary Addon for Elementor plugin <= 1.5.8 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Primary Addon for Elementor | Medium | 6.5 | 2024-10-17 19:33:14 | Deep Dive |
| CVE-2024-49264 | WordPress Events Addon for Elementor plugin <= 2.2.0 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Events Addon for Elementor | Medium | 6.5 | 2024-10-17 19:26:02 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-44024 | WordPress Medical Addon for Elementor plugin <= 1.6.4 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Medical Addon for Elementor | Medium | 6.5 | 2024-10-06 12:45:26 | Deep Dive |
| CVE-2024-44026 | WordPress Charity Addon for Elementor plugin <= 1.3.0 - Cross Site Scripting (XSS) vulnerability | nicheaddons | Charity Addon for Elementor | Medium | 6.5 | 2024-10-06 12:42:50 | Deep Dive |