Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Happy Addons for Elementor — Vulnerabilities & Security Advisories 41

All 41 CVE vulnerabilities found in Happy Addons for Elementor, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities for Happy Addons for Elementor, a WordPress plugin, focused specifically on Cross-Site Scripting (XSS) flaws. It collects reported security advisories and known defects affecting this product, covering vulnerabilities identified and published since the plugin's initial release. Readers can use this resource to track the vendor's security history, understand the technical characteristics of the collected weaknesses, and review the product's cumulative vulnerability records to assess its long-term security posture.

Vendor: weDevs

CVE ID Title CVSS Severity Published
CVE-2024-1387 Happy Addons for Elementor <= 3.10.4 - Incorrect Authorization to Information Exposure CWE-862 4.3 Medium 2024-04-09
CVE-2024-2788 Happy Addons for Elementor <= 3.10.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Post Title HTML Tag CWE-79 6.4 Medium 2024-04-09
CVE-2024-2786 Happy Addons for Elementor <= 3.10.4 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via title_tag CWE-79 5.4 Medium 2024-04-09
CVE-2024-29108 WordPress Happy Addons for Elementor plugin <= 3.10.1 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium 2024-03-19
CVE-2024-1377 Happy Addons for Elementor <= 3.10.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Author Meta Widget CWE-79 6.4 Medium 2024-03-07
CVE-2024-1366 Happy Addons for Elementor <= 3.10.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Archive Title Widget CWE-79 6.4 Medium 2024-03-07
CVE-2024-0838 Happy Addons for Elementor <= 3.10.1 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 6.4 Medium 2024-02-20
CVE-2024-0438 Happy Addons for Elementor <= 3.10.1 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 6.4 Medium 2024-02-20
CVE-2023-51676 WordPress Happy Addons for Elementor Plugin <= 3.9.1.1 is vulnerable to Server Side Request Forgery (SSRF) CWE-918 4.9 Medium 2023-12-29
CVE-2023-28989 WordPress Happy Addons for Elementor Plugin <= 3.8.2 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 4.3 Medium 2023-07-10
CVE-2021-24292 Happy Addons for Elementor Free < 2.24.0 and Pro < 1.17.0 - Contributor+ Stored XSS CWE-79 5.4 - 2021-05-17

All 41 known CVE vulnerabilities affecting Happy Addons for Elementor with full Chinese analysis, references, and POCs where available.