All 6 CVE vulnerabilities found in Events Addon for Elementor, with AI-generated Chinese analysis, references, and POCs.
Vendor: NicheAddons
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-8150 | Events Addon for Elementor <= 2.2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Typewriter and Countdown Widgets CWE-79 | 6.4 | Medium | 2025-08-29 |
| CVE-2024-12061 | Events Addon for Elementor <= 2.2.3 - Authenticated (Contributor+) Post Disclosure CWE-639 | 4.3 | Medium | 2024-12-18 |
| CVE-2024-54315 | WordPress Events Addon for Elementor plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2024-12-13 |
| CVE-2024-49264 | WordPress Events Addon for Elementor plugin <= 2.2.0 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2024-10-17 |
| CVE-2024-4669 | Events Addon for Elementor <= 2.1.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets CWE-79 | 6.4 | Medium | 2024-06-11 |
| CVE-2023-47827 | WordPress Events Addon for Elementor Plugin <= 2.1.3 is vulnerable to Broken Access Control CWE-863 | 6.5 | Medium | 2023-11-30 |
All 6 known CVE vulnerabilities affecting Events Addon for Elementor with full Chinese analysis, references, and POCs where available.