| CVE-2024-4107 | Elementor Website Builder Pro <= 3.21.0 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting | https://elementor.com/ | Elementor Website Builder Pro | Medium | 6.4 | 2024-05-09 20:03:19 | Deep Dive |
| CVE-2024-33635 | WordPress Piotnet Addons For Elementor Pro plugin <= 7.1.17 - Unauthenticated Arbitrary Post/Page Deletion vulnerability | Piotnet | Piotnet Addons For Elementor Pro | High | 7.5 | 2024-04-29 08:23:22 | Deep Dive |
| CVE-2024-33634 | WordPress Piotnet Addons For Elementor Pro plugin <= 7.1.17 - Unauthenticated Server Side Request Forgery (SSRF) vulnerability | Piotnet | Piotnet Addons For Elementor Pro | Medium | 5.4 | 2024-04-29 07:44:51 | Deep Dive |
| CVE-2024-33632 | WordPress Piotnet Addons For Elementor Pro plugin <= 7.1.17 - Cross Site Request Forgery (CSRF) vulnerability | Piotnet | Piotnet Addons For Elementor Pro | Medium | 5.4 | 2024-04-29 05:58:58 | Deep Dive |
| CVE-2024-33631 | WordPress Piotnet Addons For Elementor Pro plugin <= 7.1.17 - Authenticated Stored Cross Site Scripting (XSS) vulnerability | Piotnet | Piotnet Addons For Elementor Pro | Medium | 6.5 | 2024-04-29 05:07:56 | Deep Dive |
| CVE-2024-33633 | WordPress Piotnet Addons For Elementor Pro plugin <= 7.1.17 - Reflected Cross Site Scripting (XSS) vulnerability | Piotnet | Piotnet Addons For Elementor Pro | High | 7.1 | 2024-04-29 05:06:17 | Deep Dive |
| CVE-2024-3645 | Essential Addons for Elementor Pro <= 5.8.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'title_html_tag' | Essential Addons | Essential Addons for Elementor Pro | Medium | 6.4 | 2024-04-22 13:51:47 | Deep Dive |
| CVE-2024-1521 | Elementor Website Builder Pro <= 3.20.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Form Widget SVGZ File Upload | https://elementor.com/ | Elementor Website Builder Pro | Medium | 6.4 | 2024-03-27 06:40:51 | Deep Dive |
| CVE-2024-2120 | Elementor Website Builder Pro <= 3.20.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Post Navigation | https://elementor.com/ | Elementor Website Builder Pro | Medium | 5.4 | 2024-03-27 06:40:50 | Deep Dive |
| CVE-2024-2121 | Elementor Website Builder Pro <= 3.20.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | https://elementor.com/ | Elementor Website Builder Pro | Medium | 5.4 | 2024-03-27 06:40:50 | Deep Dive |
| CVE-2024-2781 | Elementor Website Builder Pro <= 3.20.1 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via video_html_tag | https://elementor.com/ | Elementor Website Builder Pro | Medium | 6.4 | 2024-03-27 06:40:49 | Deep Dive |
| CVE-2024-1364 | Elementor Website Builder Pro <= 3.20.1 - Authententicated (Contributor+) Stored Cross-Site Scripting | https://elementor.com/ | Elementor Website Builder Pro | Medium | 6.4 | 2024-03-27 06:40:47 | Deep Dive |
| CVE-2024-23523 | WordPress Elementor Pro plugin <= 3.19.2 - Contributor+ Arbitrary User Meta Data Retrieval vulnerability | Elementor | Elementor Pro | Medium | 6.5 | 2024-03-16 04:26:08 | Deep Dive |
| CVE-2024-2399 | Premium Addons for Elementor <= 4.10.23 - Authenticated (Contributor+) Stored Cross-Site Scripting | leap13 | Premium Addons for Elementor – Powerful Elementor Templates & Widgets | Medium | 6.4 | 2024-03-15 06:48:46 | Deep Dive |
| CVE-2024-2000 | Premium Addons PRO <= 2.9.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multi Scroll Widget | Premium Addons for Elementor | Premium Addons Pro for Elementor | Medium | 6.4 | 2024-03-13 15:32:41 | Deep Dive |
| CVE-2024-2238 | Premium Addons PRO <= 2.9.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Mouse Cursor Module | Premium Addons for Elementor | Premium Addons Pro for Elementor | Medium | 6.4 | 2024-03-13 15:32:40 | Deep Dive |
| CVE-2024-2237 | Premium Addons PRO <= 2.9.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Global Badge Module | Premium Addons for Elementor | Premium Addons Pro for Elementor | Medium | 6.4 | 2024-03-13 15:32:39 | Deep Dive |
| CVE-2024-1997 | Premium Addons PRO <= 2.9.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Messenger Chat Widget | Premium Addons for Elementor | Premium Addons Pro for Elementor | Medium | 6.4 | 2024-03-13 15:32:39 | Deep Dive |
| CVE-2024-1996 | Premium Addons for Elementor PRO <= 2.9.12 - Authenticated(Contributor+) Stored Cross-Site Scripting via widget link | Premium Addons for Elementor | Premium Addons Pro for Elementor | Medium | 6.4 | 2024-03-13 15:32:39 | Deep Dive |
| CVE-2024-2239 | Premium Addons PRO <= 2.9.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Premium Magic Scroll Module | Premium Addons for Elementor | Premium Addons Pro for Elementor | Medium | 6.4 | 2024-03-13 15:32:38 | Deep Dive |