Vulnerabilities > Livemeshelementor > Addons FOR Elementor > 8.4.2

DATE CVE VULNERABILITY TITLE RISK
2024-09-25 CVE-2024-8858 Cross-site Scripting vulnerability in Livemeshelementor Addons for Elementor
The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘piechart_settings’ parameter in all versions up to, and including, 8.5 due to insufficient input sanitization and output escaping.
network
low complexity
livemeshelementor CWE-79
5.4
2024-09-25 CVE-2024-47303 Cross-site Scripting vulnerability in Livemeshelementor Addons for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Livemesh Livemesh Addons for Elementor allows Stored XSS.This issue affects Livemesh Addons for Elementor: from n/a through 8.5.
network
low complexity
livemeshelementor CWE-79
5.4