Vulnerabilities > Wpxpro

DATE CVE VULNERABILITY TITLE RISK
2025-01-08 CVE-2024-12584 Information Exposure vulnerability in Wpxpro Xpro Addons for Elementor
The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.6.2 via the 'duplicate' function.
network
low complexity
wpxpro CWE-200
6.5
2024-12-09 CVE-2024-54253 Cross-site Scripting vulnerability in Wpxpro Xpro Addons for Elementor
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Xpro Xpro Elementor Addons allows Stored XSS.This issue affects Xpro Elementor Addons: from n/a through 1.4.6.1.
network
low complexity
wpxpro CWE-79
5.4
2024-11-05 CVE-2024-10319 Unspecified vulnerability in Wpxpro Xpro Addons for Elementor
The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.6 via the render function in widgets/content-toggle/layout/frontend.php.
network
low complexity
wpxpro
4.3
2024-08-12 CVE-2024-43150 Cross-site Scripting vulnerability in Wpxpro Xpro Addons for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Xpro Xpro Elementor Addons allows Stored XSS.This issue affects Xpro Elementor Addons: from n/a through 1.4.4.2.
network
low complexity
wpxpro CWE-79
5.4
2024-05-08 CVE-2024-34570 Unspecified vulnerability in Wpxpro Xpro Addons for Elementor
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Xpro Xpro Elementor Addons allows Stored XSS.This issue affects Xpro Elementor Addons: from n/a through 1.4.3.
network
low complexity
wpxpro
4.8