| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-63076 | WordPress The7 Elements plugin <= 2.7.11 - Local File Inclusion vulnerability | Dream-Theme | The7 Elements | - | - | 2025-12-09 14:52:37 | Deep Dive |
| CVE-2025-62082 | WordPress Generic Elements plugin <= 1.2.9 - Cross Site Scripting (XSS) vulnerability | Nasir Uddin | Generic Elements | - | - | 2025-12-09 14:52:19 | Deep Dive |
| CVE-2025-13692 | Unlimited Elements For Elementor and Unlimited Elements For Elementor (Premium) <= 2.0 - Unauthenticated Stored Cross-Site Scripting via SVG File Upload | unitecms | Unlimited Elements for Elementor (Premium) | High | 7.2 | 2025-11-27 13:53:13 | Deep Dive |
| CVE-2025-62045 | WordPress TheGem Theme Elements (for WPBakery) plugin <= 5.10.5.1 - Local File Inclusion vulnerability | CodexThemes | TheGem Theme Elements (for WPBakery) | High | 8.1 | 2025-11-06 15:55:42 | Deep Dive |
| CVE-2025-62044 | WordPress TheGem Theme Elements (for WPBakery) plugin <= 5.10.5.1 - Cross Site Scripting (XSS) vulnerability | CodexThemes | TheGem Theme Elements (for WPBakery) | 中危 | - | 2025-11-06 15:55:39 | Deep Dive |
| CVE-2025-64362 | WordPress K Elements plugin < 5.5.0 - Cross Site Scripting (XSS) vulnerability | SeventhQueen | K Elements | 中危 | - | 2025-10-31 11:42:36 | Deep Dive |
| CVE-2025-9080 | Generic Elements <= 1.2.8 - Authenticated (Contributor+) Stored Cross-Site Scripting | bdevs | Generic Elements | Medium | 6.4 | 2025-10-03 11:17:15 | Deep Dive |
| CVE-2025-9991 | Tiny Bootstrap Elements Light <= 4.3.34 - Unauthenticated Local File Inclusion | migli | Tiny Bootstrap Elements Light | High | 8.1 | 2025-09-30 03:35:31 | Deep Dive |
| CVE-2025-8200 | Mega Elements – Addons for Elementor <= 1.3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Timer Widget | kraftplugins | Mega Elements – Addons for Elementor | Medium | 6.4 | 2025-09-26 01:47:27 | Deep Dive |
| CVE-2025-58220 | WordPress Card Elements for WPBakery plugin <= 1.0.9 - Cross Site Scripting (XSS) vulnerability | Techeshta | Card Elements for WPBakery | Medium | 6.5 | 2025-09-22 18:23:49 | Deep Dive |
| CVE-2025-8689 | Elements Plus! <= 2.16.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets | cssigniterteam | Elements Plus! | Medium | 6.4 | 2025-09-11 07:24:59 | Deep Dive |
| CVE-2025-8603 | Unlimited Elements For Elementor <= 1.5.148 - Authenticated (Contributor+) Stored Cross-Site Scripting | unitecms | Unlimited Elements For Elementor | Medium | 6.4 | 2025-08-28 03:42:44 | Deep Dive |
| CVE-2025-58196 | WordPress UiCore Elements Plugin <= 1.3.4 - Cross Site Scripting (XSS) Vulnerability | uicore | UiCore Elements | Medium | 6.5 | 2025-08-27 17:45:41 | Deep Dive |
| CVE-2025-6253 | UiCore Elements <= 1.3.0 - Missing Authorization to Unauthenticated Arbitrary File Read | uicore | UiCore Elements – Free widgets and templates for Elementor | High | 7.5 | 2025-08-12 05:27:10 | Deep Dive |
| CVE-2025-28971 | WordPress Easy Elements Hider plugin <= 2.0 - Cross Site Scripting (XSS) Vulnerability | CWD Web Designer | Easy Elements Hider | Medium | 5.9 | 2025-07-04 08:42:16 | Deep Dive |
| CVE-2025-47659 | WordPress WPBakery Visual Composer WHMCS Elements plugin <= 1.0.4.3 - Cross Site Scripting (XSS) vulnerability | voidcoders | WPBakery Visual Composer WHMCS Elements | Medium | 6.5 | 2025-05-07 14:20:47 | Deep Dive |
| CVE-2025-47528 | WordPress Ovation Elements plugin <= 1.1.2 - Broken Access Control Vulnerability | pewilliams | Ovation Elements | Medium | 4.3 | 2025-05-07 14:20:11 | Deep Dive |
| CVE-2025-1054 | UiCore Elements – Free Elementor widgets and templates <= 1.0.16 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets | uicore | UiCore Elements – Free widgets and templates for Elementor | Medium | 6.4 | 2025-04-23 09:23:39 | Deep Dive |
| CVE-2025-26745 | WordPress RS Elements Elementor Addon plugin <= 1.1.5 - Stored Cross Site Scripting (XSS) vulnerability | RSTheme | RS Elements Elementor Addon | Medium | 6.5 | 2025-04-15 11:59:05 | Deep Dive |
| CVE-2025-32672 | WordPress Ultimate Bootstrap Elements for Elementor plugin <= 1.4.9 - Local File Inclusion Vulnerability | g5theme | Ultimate Bootstrap Elements for Elementor | High | 8.1 | 2025-04-11 08:43:03 | Deep Dive |