Vulnerabilities > Bdthemes > Element Pack > 5.10.17
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-04-26 | CVE-2025-1458 | Cross-site Scripting vulnerability in Bdthemes Element Pack The Element Pack Addons for Elementor – Free Templates and Widgets for Your WordPress Websites plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several widgets like Dual Button, Creative Button, Image Stack and more in all versions up to, and including, 5.10.29 due to insufficient input sanitization and output escaping. | 5.4 |