Vulnerabilities in WPVibes
36 resultsCVE-2024-30422MEDIUMWordPress Elementor Addon Elements plugin <= 1.13.1 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-4570MEDIUMElementor Addon Elements <= 1.13.5 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.3%CVE-2024-2092MEDIUMElementor Addon Elements <= 1.13.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Twitter WidgetEPSS 0.3%CVE-2024-29107MEDIUMWordPress Elementor Addon Elements plugin <= 1.12.10 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-4401MEDIUMElementor Addon Elements <= 1.13.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via id and eae_slider_animation ParametersEPSS 0.3%CVE-2024-10777MEDIUMAnyWhere Elementor <= 1.2.11 - Authenticated (Contributor+) Post DisclosureEPSS 0.3%CVE-2023-4689MEDIUMElementor Addon Elements <= 1.12.7 - Cross-Site Request ForgeryEPSS 0.3%CVE-2023-4690MEDIUMElementor Addon Elements <= 1.12.7 - Cross-Site Request ForgeryEPSS 0.3%CVE-2024-5309MEDIUMForm Vibes – Database Manager for Forms <= 1.4.12 - Missing Authorization in Multiple FunctionsEPSS 0.3%CVE-2023-33999HIGHWordPress WP Mail Log plugin <= 1.0.2 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2025-13409MEDIUMForm Vibes – Database Manager for Forms <= 1.4.13 - Authenticated (Admin+) SQL InjectionEPSS 0.3%CVE-2022-45807MEDIUMWordPress WP Mail Log Plugin <= 1.0.1 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.3%CVE-2024-47366MEDIUMWordPress Elementor Addon Elements plugin <= 1.13.6 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-12537MEDIUMAddon Elements for Elementor <= 1.14.3 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.2%CVE-2026-28131MEDIUMWordPress Elementor Addon Elements plugin <= 1.14.4 - Sensitive Data Exposure vulnerabilityEPSS 0.2%CVE-2025-31046MEDIUMWordPress AnyWhere Elementor Pro plugin <= 2.29 - Broken Access Control VulnerabilityEPSS 0.2%