Vulnerabilities > Brainstormforce > Ultimate Addons FOR Elementor

DATE CVE VULNERABILITY TITLE RISK
2024-07-09 CVE-2024-37455 Unspecified vulnerability in Brainstormforce Ultimate Addons for Elementor
Improper Privilege Management vulnerability in Brainstorm Force Ultimate Addons for Elementor allows Privilege Escalation.This issue affects Ultimate Addons for Elementor: from n/a through 1.36.31.
network
low complexity
brainstormforce
8.8
2021-05-05 CVE-2021-24271 Cross-site Scripting vulnerability in Brainstormforce Ultimate Addons for Elementor
The “Ultimate Addons for Elementor” WordPress Plugin before 1.30.0 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
3.5
2020-05-17 CVE-2020-13125 Incorrect Permission Assignment for Critical Resource vulnerability in Brainstormforce Ultimate Addons for Elementor
An issue was discovered in the "Ultimate Addons for Elementor" plugin before 1.24.2 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13126.
network
low complexity
brainstormforce CWE-732
6.4