Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

JetElements For Elementor — Vulnerabilities & Security Advisories 13

All 13 CVE vulnerabilities found in JetElements For Elementor, with AI-generated Chinese analysis, references, and POCs.

Vendor: Crocoblock

CVE IDTitleCVSSSeverityPublished
CVE-2026-24958 WordPress JetElements For Elementor plugin <= 2.7.12.2 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2026-02-03
CVE-2025-64355 WordPress JetElements For Elementor plugin <= 2.7.12 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2025-12-18
CVE-2025-49939 WordPress JetElements For Elementor plugin <= 2.7.8 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2025-10-22
CVE-2025-53983 WordPress JetElements For Elementor <= 2.7.7 - Sensitive Data Exposure Vulnerability CWE-201 7.5 -2025-08-20
CVE-2025-55714 WordPress JetElements For Elementor Plugin <= 2.7.9 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium2025-08-14
CVE-2025-53982 WordPress JetElements For Elementor plugin <= 2.7.7 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium2025-07-16
CVE-2025-39447 WordPress JetElements For Elementor plugin <= 2.7.4.1 - Broken Access Control Vulnerability CWE-862 7.5AIHighAI2025-05-19
CVE-2025-39448 WordPress JetElements For Elementor plugin <= 2.7.4.1 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2025-05-19
CVE-2023-48759 WordPress JetElements For Elementor plugin <= 2.6.13 - Unauthenticated Arbitrary Attachment Download vulnerability CWE-862 7.5 High2024-06-19
CVE-2023-48760 WordPress JetElements For Elementor plugin <= 2.6.13 - Unauthenticated Broken Access Control vulnerability CWE-862 8.2 High2024-06-19
CVE-2023-48761 WordPress JetElements For Elementor plugin <= 2.6.13 - Broken Access Control vulnerability CWE-862 6.3 Medium2024-06-19
CVE-2023-39157 WordPress JetElements For Elementor Plugin <= 2.6.10 is vulnerable to Remote Code Execution (RCE) CWE-94 9.0 Critical2023-12-31
CVE-2023-48762 WordPress JetElements For Elementor Plugin <= 2.6.13 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 6.3 Medium2023-12-18

All 13 known CVE vulnerabilities affecting JetElements For Elementor with full Chinese analysis, references, and POCs where available.