Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

kingaddons — Vulnerabilities & Security Advisories 6

Browse all 6 CVE security advisories affecting kingaddons. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Kingaddons is a browser extension provider offering tools for enhancing web browsing experiences. Historically, the project has been associated with multiple critical vulnerabilities, including cross-site scripting (XSS) and remote code execution (RCE) flaws, often stemming from improper input validation and insecure design patterns. These vulnerabilities have potentially allowed attackers to execute arbitrary code, steal sensitive data, or escalate privileges within affected browsers. While no major public security incidents have been widely documented, the consistent presence of multiple CVEs indicates ongoing security challenges that users should consider when evaluating the extension's risk profile.

CVE ID Title CVSS Severity Published
CVE-2026-15284 King Addons for Elementor <= 51.1.62 - Authenticated (Subscriber+) Stored Cross-Site Scripting via 'form_page_id' Parameter — King Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup Builder CWE-79 6.4 Medium 2026-07-10
CVE-2026-54839 WordPress Trinity Backup – Backup, Migrate, Restore, Clone & Schedule Backups plugin <= 2.0.9 - Sensitive Data Exposure vulnerability — Trinity Backup &#8211; Backup, Migrate, Restore, Clone &amp; Schedule Backups CWE-639 7.5 High 2026-06-26
CVE-2025-13535 King Addons for Elementor <= 51.1.38 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Multiple Widgets — King Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup Builder CWE-79 6.4 Medium 2026-04-01
CVE-2025-13997 King Addons for Elementor <= 51.1.49 - Unauthenticated API Keys Disclosure — King Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup Builder CWE-200 5.3 Medium 2026-03-23
CVE-2025-7960 King Addons for Elementor <= 51.1.39 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets — King Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup Builder CWE-79 6.4 Medium 2025-12-13
CVE-2025-8489 King Addons for Elementor – Free Elements, Widgets, Templates, and Features for Elementor 24.12.92 - 51.1.14 - Unauthenticated Privilege Escalation — King Addons for Elementor – 4,000+ ready Elementor sections, 650+ templates, 70+ FREE widgets for Elementor CWE-269 9.8 Critical 2025-10-31

This page lists every published CVE security advisory associated with kingaddons. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.