{“error”:0,”message”:null,”data”:{“name”:”Elementor Pro”,”plugin”:”elementor-pro”,”link”:”https:\/\/elementor.com\/pro\/”,”latest”:null,”closed”:null,”vulnerability”:[{“uuid”:”5e4b85a91ba4958c6d996b2f0f0d234271edc473246e0bc8c3027f0af5e94949″,”name”:”Elementor Pro [elementor-pro] < 3.0.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.0.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2020-26596","name":"CVE-2020-26596","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2020-26596","description":"[en] The Dynamic OOO widget for the Elementor Pro plugin through 3.0.5 for WordPress allows remote authenticated users to execute arbitrary code because only the Editor role is needed to upload executable PHP code via the PHP Raw snippet. NOTE: this issue can be mitigated by removing the Dynamic OOO widget or by restricting availability of the Editor role.","date":"2020-10-07"},{"id":"ed54f88f6981b6b7a9ae563d3257d22327e2e399","name":"Elementor Pro <= 3.0.5 – Authenticated Remote Code Execution in Dynamic OOO Widget","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-305-authenticated-remote-code-execution-in-dynamic-ooo-widget","description":"The Dynamic OOO widget for the Elementor Pro plugin through 3.0.5 for WordPress allows remote authenticated users to execute arbitrary code because only the Editor role is needed to upload executable PHP code via the PHP Raw snippet. NOTE: this issue can be mitigated by removing the Dynamic OOO widget or by restricting availability of the Editor role.","date":"2020-10-06"}],"impact":{"cwe":[{"cwe":"CWE-269","name":"Improper Privilege Management","description":"The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor."}]}},{"uuid":"88e2402c769fcfcc74345acff097dac0ef2c327c632b8043a021a0dbfbe92123","name":"Elementor Pro [elementor-pro] < 2.9.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.9.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2020-13125","name":"CVE-2020-13125","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2020-13125","description":"[en] An issue was discovered in the \"Ultimate Addons for Elementor\" plugin before 1.24.2 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13126. Unauthenticated attackers can create users with the Subscriber role even if registration is disabled.","date":"2020-05-17"}],"impact":[]},{"uuid":"6c65cf761d772098593734edcb1d4e59235b9ac0dda53aed3de7209ccdf548a7","name":"Elementor Pro [elementor-pro] < 2.9.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.9.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2020-13126","name":"CVE-2020-13126","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2020-13126","description":"[en] An issue was discovered in the Elementor Pro plugin before 2.9.4 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13125. An attacker with the Subscriber role can upload arbitrary executable files to achieve remote code execution. NOTE: the free Elementor plugin is unaffected.","date":"2020-05-17"},{"id":"29bffd7f345e494f8622f45cfdd4ff1f4078f69e","name":"WordPress Elementor Pro premium plugin <= 2.9.3 – Authenticated Arbitrary File Upload vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-premium-plugin-2-9-3-authenticated-arbitrary-file-upload-vulnerability","description":"Authenticated Arbitrary File Upload vulnerability discovered by WordFence in WordPress Elementor Pro premium plugin (versions <= 2.9.3).","date":"2020-05-06"},{"id":"aa062fc6abaf3a83aa7912d858f453d568effe69","name":"Elementor Pro <= 2.9.3 – Authenticated (Subscriber+) Arbitrary File Upload","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-293-authenticated-subscriber-arbitrary-file-upload","description":"An issue was discovered in the Elementor Pro plugin before 2.9.4 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13125. An attacker with the Subscriber role can upload arbitrary executable files to achieve remote code execution. NOTE: the free Elementor plugin is unaffected.","date":"2020-05-06"},{"id":"c2a7ac08-460e-4485-a1c6-d2066ee94920","name":"Elementor Pro < 2.9.4 – Authenticated Arbitrary File Upload","link":"https:\/\/wpscan.com\/vulnerability\/c2a7ac08-460e-4485-a1c6-d2066ee94920","description":"According to Jerome Bruandet, from NintechNet, the vulnerability, currently exploited by attackers, allows any logged-in user to upload and execute PHP scripts on the blog.\r\n\r\nChloe Chamberland from Wordfence also confirmed the issue and added that "This vulnerability is being used in conjunction with a vulnerability in Ultimate Addons for Elementor that allows for subscriber registration."","date":null}],"impact":{"cwe":[{"cwe":"CWE-434","name":"Unrestricted Upload of File with Dangerous Type","description":"The product allows the upload or transfer of dangerous file types that are automatically processed within its environment."}]}},{"uuid":"e25dc735084d97f75c93e4a6f074c73f37c7dc72e8103bca430a6eafa9524129","name":"Elementor Pro [elementor-pro] < 2.0.10","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.10","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2018-18379","name":"CVE-2018-18379","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2018-18379","description":"[en] The elementor-edit-template class in wp-admin\/customize.php in the Elementor Pro plugin before 2.0.10 for WordPress has XSS.","date":"2019-10-07"},{"id":"bc73dc84fcae3bc196df52675d3d9896a82cf626","name":"Elementor Pro <= 2.0.9 – Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-209-cross-site-scripting","description":"The elementor-edit-template class in wp-admin\/customize.php in the Elementor Pro plugin before 2.0.10 for WordPress has XSS.","date":"2018-10-26"},{"id":"7ea1de5f-6073-4fb7-9211-b36d977c5577","name":"Elementor Pro < 2.0.10 – XSS","link":"https:\/\/wpscan.com\/vulnerability\/7ea1de5f-6073-4fb7-9211-b36d977c5577","description":"The elementor-pro WordPress plugin was affected by a XSS security vulnerability.","date":null}],"impact":{"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"221f70d9f6dc81449df250140aec9e6333e742e648e784925b499da129ac7e34","name":"Elementor Pro [elementor-pro] < 3.11.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.11.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"fb51fa0a559e3932301f94a70abfc13e873e2d0a","name":"Elementor Pro <= 3.11.6 – Authenticated(Subscriber+) Privilege Escalation via update_page_option","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-3116-authenticatedsubscriber-privilege-escalation-via-update-page-option","description":"The Elementor Pro plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the update_page_option function in versions up to, and including, 3.11.6. This makes it possible for authenticated attackers with subscriber-level capabilities to update arbitrary site options, which can lead to privilege escalation.","date":"2023-03-28"}],"impact":[]},{"uuid":"5bdf526cbb79a29d4bea78068c8bf622130975fe901c398ca74860bb98b66372","name":"Elementor Pro [elementor-pro] < 3.11.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.11.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"4e28234b5d159cad922ab4e43bb8fde6b72d2898","name":"WordPress Elementor Pro Plugin <= 3.11.6 is vulnerable to Broken Access Control","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-3-11-6-authenticated-arbitrary-options-change-vulnerability","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.11.7).\nJEROME BRUANDET discovered and reported this Broken Access Control vulnerability in WordPress Elementor Pro Plugin. This vulnerability has been fixed in version 3.11.7.","date":"2023-03-28"}],"impact":[]},{"uuid":"157c36d3b5ee630f78a5832f54f01fc5860600eca0c7300157c22e908488eb85","name":"Elementor Pro [elementor-pro] < 3.11.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.11.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2023-3124","name":"CVE-2023-3124","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2023-3124","description":"[en] The Elementor Pro plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the update_page_option function in versions up to, and including, 3.11.6. This makes it possible for authenticated attackers with subscriber-level capabilities to update arbitrary site options, which can lead to privilege escalation.","date":"2023-06-07"},{"id":"73e8e030-8e8b-43de-a602-c699ab2eafaf","name":"Elementor Pro < 3.11.7 – Subscriber+ Arbitrary Options Update","link":"https:\/\/wpscan.com\/vulnerability\/73e8e030-8e8b-43de-a602-c699ab2eafaf","description":"The plugin does not have authorisation in an AJAX action (relying only on a nonce, which is available to any authenticated users), and does not validate the options to be updated. This allows any authenticated users, such as subscriber to update arbitrary blog options, such as the default_role, when the WooCommerce plugin is also active","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"8.8","severity":"h","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}]}},{"uuid":"38788ba182e95a81db3fbd2720d467d2727573c2491eedcdd2462209baa6ca95","name":"Elementor Pro [elementor-pro] < 3.13.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.13.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2023-35050","name":"CVE-2023-35050","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2023-35050","description":"[en] Missing Authorization vulnerability in Elementor Elementor Pro.This issue affects Elementor Pro: from n\/a through 3.13.0.","date":"2024-06-19"},{"id":"2fcd01cd68b76a37f921cb3d048da525f5aff98a","name":"WordPress Elementor Pro Plugin <= 3.13.0 is vulnerable to Broken Access Control","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-plugin-3-13-0-subscriber-broken-access-control-vulnerability","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.13.1).\nRafie Muhammad (Patchstack) discovered and reported this Broken Access Control vulnerability in WordPress Elementor Pro Plugin. This vulnerability has been fixed in version 3.13.1.","date":"2023-06-20"},{"id":"869753b9faae3c1c8ab0448c94a0f9cc5aecb431","name":"Elementor Pro <= 3.13.0 – Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-3130-missing-authorization","description":"The Elementor Pro plugin for WordPress is vulnerable to unauthorized access of data, modification of data, and loss of data due to a missing capability check on several functions in versions up to, and including, 3.13.0. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform unauthorized actions like modifying screenshots,","date":"2023-06-20"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:L","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"l","a":"l","score":"6.5","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}]}},{"uuid":"0993377110dd1ae77062270f7b0e478b7a4e81299beff1b6bb92e9319366096d","name":"Elementor Pro [elementor-pro] < 3.19.3","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.19.3","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-23523","name":"CVE-2024-23523","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-23523","description":"[en] Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Elementor Pro.This issue affects Elementor Pro: from n\/a through 3.19.2.","date":"2024-03-16"},{"id":"b51b3678913082dfb6d59584647151d4389808ba","name":"WordPress Elementor Pro Plugin <= 3.19.2 is vulnerable to Sensitive Data Exposure","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-plugin-3-19-2-contributor-arbitrary-user-meta-data-retrieval-vulnerability","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.19.3).\nDynamic.ooo Team discovered and reported this Sensitive Data Exposure vulnerability in WordPress Elementor Pro Plugin. This vulnerability has been fixed in version 3.19.3.\nThis vulnerability was reported to and published by Patchstack. Our users receive alerts and protections up to 48 hours in advance.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"6a213b9a6bc614e0bb38880e493906f6b6c499e4","name":"Elementor Pro <= 3.19.2 – Authenticated (Contributor+) Information Exposure","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-3192-authenticated-contributor-information-exposure","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.19.2 . This makes it possible for authenticated attackers, with contributor-level access and above, to extract arbitrary user meta values.","date":"2024-02-26"},{"id":"52195b1a-31b9-46da-bed8-7fdd2c6c8c14","name":"Elementor Pro < 3.19.3 – Authenticated (Contributor+) Information Exposure","link":"https:\/\/wpscan.com\/vulnerability\/52195b1a-31b9-46da-bed8-7fdd2c6c8c14","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.19.2 . This makes it possible for authenticated attackers, with contributor-level access and above, to extract arbitrary user meta values.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:N\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"h","i":"n","a":"n","score":"6.5","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-200","name":"Exposure of Sensitive Information to an Unauthorized Actor","description":"The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information."}]}},{"uuid":"5663f058a58953606f8ac0beac7312f989aba312aee079d9e65ee52788b48a2c","name":"Elementor Pro [elementor-pro] < 3.20.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.20.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-2121","name":"CVE-2024-2121","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-2121","description":"[en] The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Media Carousel widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-27"},{"id":"2a33f9d9ef5180d11ded5ea5ff95c95cbcf16c9c","name":"Elementor Website Builder Pro <= 3.20.1 – Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-website-builder-pro-3201-authenticated-contributor-stored-cross-site-scripting","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Media Carousel widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-26"},{"id":"f5412336ec609ecb389670eeecb1d52e15f6fecd","name":"WordPress Elementor Pro Plugin <= 3.20.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/elementor-website-builder-pro-3-20-1-auth-stored-cross-site-scripting-xss-vulnerability","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.20.2).\nwesley (wcraft) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Elementor Pro Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 3.20.2.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"a48b0031-02f6-4871-beb3-0f61e1cd3d28","name":"Elementor Website Builder Pro < 3.20.2 – Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/a48b0031-02f6-4871-beb3-0f61e1cd3d28","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Media Carousel widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"l","i":"l","a":"n","score":"5.4","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"5ebc92b4f8a8cb82852ac60e1e0689910c63ec0f90b68b3c1dc29a9b9b90e739","name":"Elementor Pro [elementor-pro] < 3.20.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.20.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-2120","name":"CVE-2024-2120","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-2120","description":"[en] The Elementor Website Builder \u2013 More than Just a Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Post Navigation widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-27"},{"id":"3efe5d2d13b661e254f8485c93f9851d5f4dd92f","name":"Elementor Website Builder Pro <= 3.20.1 – Authenticated (Contributor+) Stored Cross-Site Scripting via Post Navigation","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-website-builder-more-than-just-a-page-builder-3201-authenticated-contributor-stored-cross-site-scripting-via-post-navigation","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Post Navigation widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-26"},{"id":"515903ce079345b9ed4cc652559b2fbf23813f98","name":"WordPress Elementor Pro Plugin <= 3.20.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-plugin-3-20-1-auth-stored-cross-site-scripting-xss-vulnerability","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.20.2).\nwesley (wcraft) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Elementor Pro Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 3.20.2.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"ed24ea21-967a-43e3-8219-daed594c6e11","name":"Elementor Website Builder – More than Just a Page Builder < 3.20.2 – Authenticated (Contributor+) Stored Cross-Site Scripting via Post Navigation","link":"https:\/\/wpscan.com\/vulnerability\/ed24ea21-967a-43e3-8219-daed594c6e11","description":"The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Post Navigation widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"l","i":"l","a":"n","score":"5.4","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"137d207a9904305774399b26e5cf533e932087f436e527aa9793fe1fbf20406c","name":"Elementor Pro [elementor-pro] < 3.20.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.20.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-2781","name":"CVE-2024-2781","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-2781","description":"[en] The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the video_html_tag attribute in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-27"},{"id":"43655bcfdbf79665b339e9da80ad86054d8fd9ef","name":"Elementor Website Builder Pro <= 3.20.1 – Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via video_html_tag","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-website-builder-pro-3201-authenticated-contributor-dom-based-stored-cross-site-scripting-via-video-html-tag","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the video_html_tag attribute in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-26"},{"id":"fb5d2952d10d3a8405556894a00f58a20bf0c3fd","name":"WordPress Elementor Pro Plugin <= 3.20.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-plugin-3-20-1-auth-dom-based-stored-cross-site-scripting-xss-vulnerability","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.20.2).\nwesley (wcraft) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Elementor Pro Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 3.20.2.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"964c149d-fb08-4f86-a9a8-34a4412b5fdd","name":"Elementor Website Builder Pro < 3.20.2 – Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via video_html_tag","link":"https:\/\/wpscan.com\/vulnerability\/964c149d-fb08-4f86-a9a8-34a4412b5fdd","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the video_html_tag attribute in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"6.4","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"1c6a86708b1ebb275eba43fe085b367c2aed5f8ee06dd7c82e797d3ba0e1cc26","name":"Elementor Pro [elementor-pro] < 3.20.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.20.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-1364","name":"CVE-2024-1364","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-1364","description":"[en] The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widget's custom_id in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-27"},{"id":"8b3f3e24fd4539dd3d0ba065797690e90835cba0","name":"Elementor Website Builder Pro <= 3.20.1 – Authententicated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-website-builder-pro-3201-authententicated-contributor-stored-cross-site-scripting","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widget's custom_id in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-26"},{"id":"e7a899eb2ff4c441270bd306b64e9c26170cb057","name":"WordPress Elementor Pro Plugin <= 3.20.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-plugin-3-20-1-auth-stored-cross-site-scripting-xss-vulnerability-2","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.20.2).\nwesley (wcraft) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Elementor Pro Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 3.20.2.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"d332bb66-e69c-4d11-8ff2-2c35d7ce2808","name":"Elementor Website Builder Pro < 3.20.2 – Authententicated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/d332bb66-e69c-4d11-8ff2-2c35d7ce2808","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widget's custom_id in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"6.4","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"63f045b5405d55f9f3bab3ec018f13df361efdddf720e5d44a2147276a50b01c","name":"Elementor Pro [elementor-pro] < 3.20.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.20.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-1521","name":"CVE-2024-1521","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-1521","description":"[en] The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an SVGZ file uploaded via the Form widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. NOTE: This vulnerability is only exploitable on web servers running NGINX. It is not exploitable on web servers running Apache HTTP Server.","date":"2024-03-27"},{"id":"8dc4cf0cec02bd2521f38da3a5d43339258bd5e7","name":"Elementor Website Builder Pro <= 3.20.1 – Authenticated (Contributor+) Stored Cross-Site Scripting via Form Widget SVGZ File Upload","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-website-builder-pro-3201-authenticated-contributor-stored-cross-site-scripting-via-form-widget-svgz-file-upload","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an SVGZ file uploaded via the Form widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. NOTE: This vulnerability is only exploitable on web servers running NGINX. It is not exploitable on web servers running Apache HTTP Server.","date":"2024-03-26"},{"id":"a1d699335b1af65406db6912cdc0f016f4514ebd","name":"WordPress Elementor Pro Plugin <= 3.20.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-plugin-3-20-1-auth-stored-cross-site-scripting-xss-vulnerability-3","description":"Update the WordPress Elementor Pro plugin to the latest available version (at least 3.20.2).\nwesley (wcraft) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Elementor Pro Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 3.20.2.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"249f4270-610c-4422-b34f-e714358fb398","name":"Elementor Website Builder Pro < 3.20.2 – Authenticated (Contributor+) Stored Cross-Site Scripting via Form Widget SVGZ File Upload","link":"https:\/\/wpscan.com\/vulnerability\/249f4270-610c-4422-b34f-e714358fb398","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an SVGZ file uploaded via the Form widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. NOTE: This vulnerability is only exploitable on web servers running NGINX. It is not exploitable on web servers running Apache HTTP Server.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"6.4","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"79af9115a3b35cb5b1ee14acfa5d0a88fd4409b74ebb760deeca28b24d71c17d","name":"Elementor Pro [elementor-pro] < 3.21.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.21.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-4107","name":"CVE-2024-4107","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-4107","description":"[en] The Elementor Website Builder \u2013 More than Just a Page Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the several parameters in versions up to, and including, 3.21.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-09"},{"id":"a4353b1d215505745bb8d908717bda2c59348292","name":"Elementor Website Builder Pro <= 3.21.0 – Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-website-builder-pro-3210-authenticated-contributor-dom-based-stored-cross-site-scripting","description":"The Elementor Website Builder \u2013 More than Just a Page Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the several parameters in versions up to, and including, 3.21.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-02"},{"id":"84c6fb0d9d2d94c213c072c63971ed31c5da3887","name":"WordPress Elementor Pro Plugin <= 3.21.0 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-website-builder-pro-plugin-3-21-0-authenticated-contributor-dom-based-stored-cross-site-scripting-vulnerability","description":"
WordPress Elementor Pro Plugin <= 3.21.0 is vulnerable to Cross Site Scripting (XSS)
Affected Version <= 3.21.0
Fixed in version 3.21.2 “,”date”:”2024-05-03″}],”impact”:{“cvss”:{“version”:”3.1″,”vector”:”CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N”,”av”:”n”,”ac”:”l”,”pr”:”l”,”ui”:”n”,”s”:”c”,”c”:”l”,”i”:”l”,”a”:”n”,”score”:”6.4″,”severity”:”m”,”exploitable”:”0.0″,”impact”:”0.0″},”cwe”:[{“cwe”:”CWE-79″,”name”:”Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’)”,”description”:”The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.”}]}},{“uuid”:”3502935b2d16dfbe6d83bdeb2458bea31d17010b0970000582552ffbe2863897″,”name”:”Elementor Pro [elementor-pro] < 3.21.3","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.21.3","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-35656","name":"CVE-2024-35656","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-35656","description":"[en] Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Elementor Elementor Pro allows Reflected XSS.This issue affects Elementor Pro: from n\/a through 3.21.2.","date":"2024-07-22"},{"id":"bab80c1d9800925e6ebc367e1f8415187d03532d","name":"WordPress Elementor Pro Plugin <= 3.21.2 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-pro-3-21-2-reflected-cross-site-scripting-xss-vulnerability","description":"
WordPress Elementor Pro Plugin <= 3.21.2 is vulnerable to Cross Site Scripting (XSS)
Affected Version <= 3.21.2
Fixed in version 3.21.3 “,”date”:”2024-06-28″},{“id”:”ef73b70c5be2ad4329f5f0fcc4487e20c6598afd”,”name”:”Elementor Pro <= 3.21.2 – Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-3212-reflected-cross-site-scripting","description":"The Elementor Pro plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.21.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2024-06-28"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:L","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"l","score":"7.1","severity":"h","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"986ba4a3d02468ba8e6e327c571768b48e3ee511fb13f3c8965da55991a65c63","name":"Elementor Pro [elementor-pro] < 3.25.11","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.25.11","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-8494","name":"CVE-2024-8494","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-8494","description":"","date":null},{"id":"8655e362da0aa44ed16ccae36ef8f8226e62d867","name":"WordPress Elementor Pro Plugin <= 3.25.10 is vulnerable to Sensitive Data Exposure","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/elementor-pro\/vulnerability\/wordpress-elementor-website-builder-pro-plugin-3-25-10-authenticated-contributor-sensitive-information-exposure-via-shortcode-vulnerability","description":"
WordPress Elementor Pro Plugin <= 3.25.10 is vulnerable to Sensitive Data Exposure
Software: Elementor Pro
Fixed in version 3.25.11
Affected Version <= 3.25.10
CVE: CVE-2024-8494″,”date”:”2025-01-30″},{“id”:”84b5c4aa5f2b804ebb0a71ae17029a0937298b35″,”name”:”Elementor Website Builder Pro – More than Just a Page Builder <= 3.25.10 – Authenticated (Contributor+) Sensitive Information Exposure via Shortcode”,”link”:”https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-website-builder-pro-more-than-just-a-page-builder-32510-authenticated-contributor-sensitive-information-exposure-via-shortcode”,”description”:”The Elementor Website Builder Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.25.10 via the 'elementor-template' shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive data including the content of Private, Pending, and Draft Templates. The vulnerability was partially patched in version 3.24.4.”,”date”:null}],”impact”:[]},{“uuid”:”fd7080606850c63cae85f1fcc85be09626a430e5117abedef273252cae064b8e”,”name”:”Elementor Pro [elementor-pro] < 3.29.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.29.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-3076","name":"CVE-2025-3076","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-3076","description":"","date":null},{"id":"605172dfc56b1cb2b2e24aaa389057bb563ced63","name":"Elementor Pro <= 3.29.0 – Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/elementor-pro\/elementor-pro-3290-authenticated-contributor-stored-cross-site-scripting","description":"The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘button_text’ parameter in all versions up to, and including, 3.29.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":null}],"impact":[]},{"uuid":"c5f7441b7c162bb5ae0349e39a33633edbfd65d9c615b2fe40db34ee701b8fc3","name":"Elementor Pro [elementor-pro] < 3.29.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.29.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-50555","name":"CVE-2024-50555","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-50555","description":"","date":null},{"id":"762b610b4f00923a6be4ecac3a070e5468f3a63b","name":"Elementor Website Builder <= 3.29.0 – Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/detail\/elementor-website-builder-3290-authenticated-contributor-stored-cross-site-scripting","description":"The Elementor Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.29.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":null}],"impact":[]}]},"updated":"1750932179"}