Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Happy Addons for Elementor — Vulnerabilities & Security Advisories 40

All 40 CVE vulnerabilities found in Happy Addons for Elementor, with AI-generated Chinese analysis, references, and POCs.

This page documents security weaknesses affecting Happy Addons for Elementor, categorized by Common Weakness Enumeration types. It aggregates vulnerability records reported by researchers and tracked by monitoring services, covering incidents from January 2021 through December 2023. The collection includes data on remote code execution, cross-site scripting, and privilege escalation flaws found in various releases of this popular WordPress page builder extension. Visitors can track the vendor’s response patterns and timeline of advisories to assess organizational security maturity. You may also use this resource to understand specific weakness classes and their impact on WordPress environments powered by Elementor. The database allows users to look up a product’s historical vulnerability landscape, providing context on the frequency and severity of past issues. This information helps developers, site administrators, and security professionals evaluate risk exposure and prioritize remediation efforts. By centralizing these details, the page serves as a reference for understanding the security posture of Happy Addons over time. It highlights trends in defect discovery and offers insights into how third-party plugins can introduce systemic risks to web applications. The content is intended for technical audiences seeking to audit dependencies or research specific flaw patterns. It does not provide immediate patch instructions but rather offers a comprehensive view of the threat history associated with this specific software component. Understanding these patterns aids in making informed decisions about plugin usage and maintenance schedules.

Vendor: weDevs

CVE IDTitleCVSSSeverityPublished
CVE-2024-2788 Happy Addons for Elementor <= 3.10.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Post Title HTML Tag CWE-79 6.4 Medium2024-04-09
CVE-2024-2786 Happy Addons for Elementor <= 3.10.4 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via title_tag CWE-79 5.4 Medium2024-04-09
CVE-2024-29108 WordPress Happy Addons for Elementor plugin <= 3.10.1 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2024-03-19
CVE-2024-1377 Happy Addons for Elementor <= 3.10.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Author Meta Widget CWE-79 6.4 Medium2024-03-07
CVE-2024-1366 Happy Addons for Elementor <= 3.10.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Archive Title Widget CWE-79 6.4 Medium2024-03-07
CVE-2024-0838 Happy Addons for Elementor <= 3.10.1 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 6.4 Medium2024-02-20
CVE-2024-0438 Happy Addons for Elementor <= 3.10.1 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 6.4 Medium2024-02-20
CVE-2023-51676 WordPress Happy Addons for Elementor Plugin <= 3.9.1.1 is vulnerable to Server Side Request Forgery (SSRF) CWE-918 4.9 Medium2023-12-29
CVE-2023-28989 WordPress Happy Addons for Elementor Plugin <= 3.8.2 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 4.3 Medium2023-07-10
CVE-2021-24292 Happy Addons for Elementor Free < 2.24.0 and Pro < 1.17.0 - Contributor+ Stored XSS CWE-79 5.4 -2021-05-17

All 40 known CVE vulnerabilities affecting Happy Addons for Elementor with full Chinese analysis, references, and POCs where available.