| CVE-2024-4454 | WithSecure Elements Endpoint Protection Link Following Local Privilege Escalation Vulnerability | WithSecure | Elements | - | - | 2024-05-22 19:13:53 | Deep Dive |
| CVE-2024-4702 | Mega Elements <= 1.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button Widget | kraftplugins | Mega Elements – Addons for Elementor | Medium | 6.4 | 2024-05-15 11:33:08 | Deep Dive |
| CVE-2024-4666 | Borderless - Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg <= 1.5.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets | visualmodo | Borderless – Addons and Templates for Elementor | Medium | 6.4 | 2024-05-14 22:31:38 | Deep Dive |
| CVE-2024-3055 | Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.102 - Authenticated (Contributor+) SQL Injection | unitecms | Unlimited Elements For Elementor | High | 8.8 | 2024-05-10 21:32:43 | Deep Dive |
| CVE-2024-3547 | Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.102 - Reflected Cross-Site Scripting | unitecms | Unlimited Elements For Elementor | Medium | 6.1 | 2024-05-10 07:33:40 | Deep Dive |
| CVE-2024-2662 | Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.102 - Authenticated (Admin+) Command Injection | unitecms | Unlimited Elements For Elementor | High | 7.2 | 2024-05-10 07:33:38 | Deep Dive |
| CVE-2024-3743 | Elementor Addon Elements <= 1.13.3 - Authenticated (Contributor+) Stored Cross-Site Scripting | wpvibes | Addon Elements for Elementor (formerly Elementor Addon Elements) | Medium | 6.4 | 2024-05-02 16:52:51 | Deep Dive |
| CVE-2023-31090 | WordPress Unlimited Elements For Elementor plugin <= 1.5.60 - Unrestricted Zip Extraction vulnerability | Unlimited Elements | Unlimited Elements For Elementor (Free Widgets, Addons, Templates) | Critical | 9.9 | 2024-04-24 15:45:55 | Deep Dive |
| CVE-2024-32575 | WordPress Mega Elements plugin <= 1.1.9 - Cross Site Scripting (XSS) vulnerability | Kraftplugins | Mega Elements | Medium | 6.5 | 2024-04-18 09:35:45 | Deep Dive |
| CVE-2024-32592 | WordPress Void Elementor WHMCS Elements For Elementor Page Builder plugin <= 2.0 - Cross Site Scripting (XSS) vulnerability | VoidCoders, innovs | Void Elementor WHMCS Elements For Elementor Page Builder | Medium | 6.5 | 2024-04-18 08:37:47 | Deep Dive |
| CVE-2024-32457 | WordPress Elements Plus! plugin <= 2.16.3 - Cross Site Scripting (XSS) vulnerability | The CSSIgniter Team | Elements Plus! | Medium | 6.5 | 2024-04-17 09:55:53 | Deep Dive |
| CVE-2024-2792 | Elementor Addon Elements <= 1.13.2 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'Text Separator' and 'Image Compare' Widget | wpvibes | Addon Elements for Elementor (formerly Elementor Addon Elements) | Medium | 6.4 | 2024-04-09 18:59:28 | Deep Dive |
| CVE-2024-2335 | Elements Plus! <= 2.16.2 - Authenticated(Contributor+) Stored Cross-Site Scripting via widget links | cssigniterteam | Elements Plus! | Medium | 6.4 | 2024-04-09 18:59:09 | Deep Dive |
| CVE-2024-2132 | Ultimate Bootstrap Elements for Elementor <= 1.4.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Widget | g5theme | Ultimate Bootstrap Elements for Elementor | Medium | 6.4 | 2024-04-06 08:38:53 | Deep Dive |
| CVE-2024-0367 | Unlimited Elements For Elementor <= 1.5.96 - Authenticated (Contributor+) Stored Cross-Site Scripting via Widget Link | unitecms | Unlimited Elements For Elementor | Medium | 6.4 | 2024-03-30 04:31:08 | Deep Dive |
| CVE-2024-30426 | WordPress Hash Elements plugin <= 1.3.3 - Cross Site Scripting (XSS) vulnerability | HashThemes | Hash Elements | Medium | 6.5 | 2024-03-29 13:21:31 | Deep Dive |
| CVE-2024-30422 | WordPress Elementor Addon Elements plugin <= 1.13.1 - Cross Site Scripting (XSS) vulnerability | WPVibes | Elementor Addon Elements | Medium | 6.5 | 2024-03-28 09:03:36 | Deep Dive |
| CVE-2024-2091 | Elementor Addon Elements <= 1.13.2 - Authenticated (Contributor+) Stored Cross-Site Scripting | wpvibes | Addon Elements for Elementor (formerly Elementor Addon Elements) | Medium | 5.4 | 2024-03-28 02:37:11 | Deep Dive |
| CVE-2024-29792 | WordPress Unlimited Elements for Elementor plugin <= 1.5.93 - Reflected Cross Site Scripting (XSS) vulnerability | Unlimited Elements | Unlimited Elements For Elementor (Free Widgets, Addons, Templates) | High | 7.1 | 2024-03-27 12:51:32 | Deep Dive |
| CVE-2024-29107 | WordPress Elementor Addon Elements plugin <= 1.12.10 - Cross Site Scripting (XSS) vulnerability | WPVibes | Elementor Addon Elements | Medium | 6.5 | 2024-03-19 15:35:27 | Deep Dive |