Exposición de Elementor
Page builders, WordPress plugins696
score de exposición
960.635
sitios usan
0
en explotación
46
críticos
CVEs
1530 resultadosCVE-2023-0714HIGHMetform Elementor Contact Form Builder <= 3.2.4 - Unauthenticated Double-Extension Arbitrary File UploadEPSS 1.0%CVE-2024-5349HIGHLA-Studio Element Kit for Elementor <= 1.3.8.1 - Authenticated (Contributor+) Local File InclusionEPSS 1.0%CVE-2026-4885CRITICALPiotnet Addons for Elementor Pro <= 7.1.70 - Unauthenticated Arbitrary File Upload via Form File UploadEPSS 1.0%CVE-2022-4703MEDIUMRoyal Elementor Addons <= 1.3.59 - Insufficient Access Control to Import DeletionEPSS 0.9%CVE-2024-5179HIGHCowidgets – Elementor Addons <= 1.1.2 - Authenticated (Contributor+) Local File InclusionEPSS 0.9%CVE-2025-30845HIGHWordPress The Pack Elementor addons plugin <= 2.1.1 - Local File Inclusion vulnerabilityEPSS 0.9%CVE-2023-4723MEDIUMElementor Addon Elements <= 1.12.7 - Missing Authorization to Sensitive Information ExposureEPSS 0.9%CVE-2025-1639HIGHAnimation Addons for Elementor Pro <= 1.6 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation/ActivationEPSS 0.9%CVE-2026-4659HIGHUnlimited Elements For Elementor <= 2.0.6 - Authenticated (Contributor+) Arbitrary File Read via Path Traversal in Repeater JSON/CSV URL with Path TraversalEPSS 0.9%CVE-2024-2385HIGHElementor Addons by Livemesh <= 8.4 - Authenticated (Contributor+) Limited Local File Inclusion via WidgetsEPSS 0.9%CVE-2021-4331HIGHThe Plus Addons for Elementor PRO <= 4.1.9 & The Plus Addons for Elementor <= 2.0.6 - Authenticated (Contributor+) Privilege EscalationEPSS 0.9%CVE-2025-32157HIGHWordPress Sparkle Elementor Kit plugin <= 2.0.9 - Local File Inclusion vulnerabilityEPSS 0.9%CVE-2021-25027—PowerPack Addons for Elementor < 2.6.2 - Reflected Cross-Site ScriptingEPSS 0.9%CVE-2024-5335CRITICALUltimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Product Table, Woocommerce Slider <= 1.6.4 - Unauthenticated PHP Object InjectionEPSS 0.9%CVE-2024-13409HIGHPost Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget <= 1.6.10 - Authenticated (Contributor+) Local File Inclusion via post_type_ajax_handler()EPSS 0.8%CVE-2024-3055HIGHUnlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.102 - Authenticated (Contributor+) SQL InjectionEPSS 0.8%CVE-2022-4700MEDIUMRoyal Elementor Addons <= 1.3.59 - Insufficient Access Control to Theme ActivationEPSS 0.8%CVE-2026-1620HIGHLivemesh Addons by Elementor <= 9.0 - Authenticated (Contributor+) Local File Inclusion via Widget Template ParameterEPSS 0.8%CVE-2024-5348HIGHElements For Elementor <= 2.1 - Authenticated (Contributor+) Local File Inclusion via Multiple Widget AttributesEPSS 0.8%CVE-2022-4702MEDIUMRoyal Elementor Addons <= 1.3.59 - Insufficient Access Control to Plugin DeactivationEPSS 0.8%
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →