Vulnerabilities > Elementor
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-05-17 | CVE-2020-13126 | Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Page Builder An issue was discovered in the Elementor Pro plugin before 2.9.4 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13125. | 9.9 |
2020-04-22 | CVE-2020-7055 | Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Page Builder An issue was discovered in Elementor 2.7.4. | 9.9 |
2020-01-28 | CVE-2020-8426 | Cross-site Scripting vulnerability in Elementor Website Builder The Elementor plugin before 2.8.5 for WordPress suffers from a reflected XSS vulnerability on the elementor-system-info page. | 5.4 |
2020-01-22 | CVE-2020-7109 | Unspecified vulnerability in Elementor Website Builder The Elementor Page Builder plugin before 2.8.4 for WordPress does not sanitize data during creation of a new template. | 9.8 |
2019-10-07 | CVE-2018-18379 | Cross-site Scripting vulnerability in Elementor Page Builder The elementor-edit-template class in wp-admin/customize.php in the Elementor Pro plugin before 2.0.10 for WordPress has XSS. | 6.1 |
2019-09-10 | CVE-2017-18596 | Improper Privilege Management vulnerability in Elementor Page Builder The elementor plugin before 1.8.0 for WordPress has incorrect access control for internal functions. | 8.8 |