| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-14275 | Jeg Elementor Kit <= 3.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2026-01-08 02:21:16 | Deep Dive |
| CVE-2025-9978 | Jeg Elementor Kit < 2.7.0 - Author+ Stored XSS | Unknown | Jeg Kit for Elementor | 中危 | - | 2025-10-24 06:00:10 | Deep Dive |
| CVE-2025-2944 | Jeg Elementor Kit <= 2.6.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Video Button and Countdown Widgets | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2025-05-10 05:32:16 | Deep Dive |
| CVE-2024-13217 | Jeg Elementor Kit <= 2.6.11 - Authenticated (Contributor+) Sensitive Information Exposure via Countdown and Off-Canvas | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 4.3 | 2025-02-27 11:13:33 | Deep Dive |
| CVE-2024-10308 | Jeg Elementor Kit <= 2.6.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Countdown Widget | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-11-26 11:04:31 | Deep Dive |
| CVE-2024-8899 | Jeg Elementor Kit <= 2.6.9 - Authenticated (Contributor+) Sensitive Information Exposure via sg_content_template | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 4.3 | 2024-11-26 11:04:30 | Deep Dive |
| CVE-2024-47390 | WordPress Jeg Elementor Kit plugin <= 2.6.8 - Cross Site Scripting (XSS) vulnerability | jegtheme | Jeg Elementor Kit | Medium | 6.5 | 2024-10-05 14:45:26 | Deep Dive |
| CVE-2024-6804 | Jeg Elementor Kit <= 2.6.7 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-08-27 06:48:04 | Deep Dive |
| CVE-2024-4479 | Jeg Elementor Kit <= 2.6.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Tabs and JKit - Accordion Widgets | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-06-15 02:02:01 | Deep Dive |
| CVE-2024-3161 | Jeg Elementor Kit <= 2.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-05-02 16:52:03 | Deep Dive |
| CVE-2024-3819 | Jeg Elementor Kit <= 2.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Banner | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-05-02 16:52:02 | Deep Dive |
| CVE-2024-0334 | Jeg Elementor Kit <= 2.6.4 - Authenticated (Contributor+) Cross-Site Scripting via Elementor Widget URL Custom Attributes | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-05-01 12:46:31 | Deep Dive |
| CVE-2024-32721 | WordPress Jeg Elementor Kit plugin <= 2.6.3 - Cross Site Scripting (XSS) vulnerability | Jegtheme | Jeg Elementor Kit | Medium | 6.5 | 2024-04-24 10:09:51 | Deep Dive |
| CVE-2024-3162 | Jeg Elementor Kit <= 2.6.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Testimonial | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-04-03 02:32:47 | Deep Dive |
| CVE-2024-1327 | Jeg Elementor Kit <= 2.6.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Box | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-04-03 02:32:46 | Deep Dive |
| CVE-2024-29101 | WordPress Jeg Elementor Kit plugin <= 2.6.2 - Cross Site Scripting (XSS) vulnerability | Jegtheme | Jeg Elementor Kit | Medium | 6.5 | 2024-03-19 15:50:53 | Deep Dive |
| CVE-2024-1326 | Jeg Elementor Kit <= 2.6.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via HTML Tags | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 6.4 | 2024-03-12 23:33:52 | Deep Dive |
| CVE-2022-3794 | Jeg Elementor Kit <= 2.5.6 - Authorization Bypass | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | Medium | 5.4 | 2022-12-22 20:27:09 | Deep Dive |
| CVE-2022-3805 | Jeg Elementor Kit <= 2.5.6 - Unauthenticated Authorization Bypass | jegtheme | Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress | High | 8.6 | 2022-12-22 20:26:50 | Deep Dive |