Royal Elementor Addons
royal-elementor-addons
59 CVEs • 2 products
Products (2)
Click to collapseToggle
Products (2)
Click to collapse
CVEs (59)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Royal Elementor Addons 1Royal Elementor Addons Apr 8, 2026 Jun 26, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.7.1028 due to insufficient input sanitization and output escaping...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Jul 11, 2025 May 31, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘_elementor_data’ parameter in all versions up to, and including, 1.7.1020 due to insufficient input sani...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Apr 23, 2026 May 7, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Stored XSS.This issue affects Royal Elementor Addons: fr...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Jul 11, 2025 May 7, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown widget display_message_text parameter in all versions up to, and including, 1.7.1017 due to ins...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Apr 23, 2026 Apr 15, 2025 N/A· v4 4.9 MEDIUM· v3 N/A· v2 Server-Side Request Forgery (SSRF) vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Server Side Request Forgery.This issue affects Royal Elementor Addons: from n/a through <= 1.7.1006. |
1Royal Elementor Addons 1Royal Elementor Addons Jul 8, 2025 Apr 12, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `widgetGrid`, `widgetCountDown`, and `widgetInstagramFeed` methods in all versions up to, and including,...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Jul 8, 2025 Apr 12, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Woo Grid widget in all versions up to, and including, 1.7.1012 due to insufficient input sanitization and...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Feb 28, 2025 Feb 19, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.7.1007. This is due to missing or incorrect nonce validation on the 'wpr_f...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Mar 3, 2025 Jan 14, 2025 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.7.1006. This is due to missing or incorrect nonce validation on the wpr_fi...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Apr 23, 2026 Dec 31, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Stored XSS.This issue affects Royal Elementor Addons: fr...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Apr 23, 2026 Dec 31, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Missing Authorization vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Royal Elementor Addons: from n/a th...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Apr 23, 2026 Dec 31, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Reflected XSS.This issue affects Royal Elementor Addons:...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Mar 4, 2025 Nov 28, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.7.1003 via the 'wpr-template' shortcode due to insufficient restrictions on whic...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Nov 19, 2024 Nov 13, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Form Builder widget in all versions up to, and including, 1.7.1001 due to insufficient input san...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Nov 19, 2024 Nov 13, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown widget in all versions up to, and including, 1.7.1001 due to insufficient input saniti...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Nov 19, 2024 Nov 13, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Google Maps widget in all versions up to, and including, 1.7.1001 due to insufficient input sanitization...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Apr 23, 2026 Oct 28, 2024 N/A· v4 7.2 HIGH· v3 N/A· v2 Improper Restriction of XML External Entity Reference vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows XML Injection.This issue affects Royal Elementor Addons: from n/a through <= 1.3.980. |
1Royal Elementor Addons 1Royal Elementor Addons Jan 10, 2025 Oct 17, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.3.986 via the data_fetch. This makes it possible for authenticated attackers, wi...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Jan 15, 2025 Oct 8, 2024 N/A· v4 6.4 MEDIUM· v3 N/A· v2 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in all versions up to, and including, 1.3.982 due to insufficient input sanitization and...Show more |
1Royal Elementor Addons 1Royal Elementor Addons Apr 23, 2026 Sep 18, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons.This issue affects Royal Elementor Addons: from n/a through <=...Show more |