Extension WordPress
Vulnérabilités Borderless – Addons and Templates for Elementor
Cette page rassemble les failles publiées pour Borderless – Addons and Templates for Elementor, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Borderless – Addons and Templates for Elementor
8 fiches
Borderless – Elementor Addons and Templates <= 1.7.1 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Borderless – Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘title’ parameter in all versions up to, and including, 1.7.1 due to insufficient input sanitization and output escaping. This makes…
*-1.7.1
1.7.2
30/05/2025
Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg <= 1.6.2 – Authenticated (Author+) Stored Cross-Site Scripting via SVG Upload
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6.2 due to insufficient input sanitization…
*-1.6.2
1.6.3
30/01/2025
Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg <= 1.6.0 – Authenticated (Administrator+) Remote Code Execution
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.6.0 via the 'write_config' function. This is due to a…
*-1.6.0
1.6.1
30/01/2025
Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg <= 1.5.9 – Missing Authorization to Icon Font Deletion
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'remove_zipped_font' function in all versions up to, and…
*-1.5.9
1.6.0
30/01/2025
Borderless <= 1.5.8 – Authenticated (Editor+) Stored Cross-Site Scripting
The Borderless plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.5.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with editor-level access and above,…
*-1.5.8
1.5.9
02/12/2024
Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg <= 1.5.3 – Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.5.3 due to insufficient input sanitization and…
*-1.5.3
1.5.4
14/05/2024
Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg <= 1.5.3 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widget attributes in versions up to, and including, 1.5.3 due to insufficient input sanitization and output…
*-1.5.3
1.5.4
14/05/2024
Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg <= 1.4.8 – Authenticated (Administrator+) Stored Cross-Site Scripting
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.4.8 due to insufficient input sanitization and output escaping. This makes…
*-1.4.8
1.4.9
20/07/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.