Extension WordPress
Vulnérabilités WPB Addons for Elementor – News Ticker, Timeline, Team & More Widgets
Cette page rassemble les failles publiées pour WPB Addons for Elementor – News Ticker, Timeline, Team & More Widgets, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de WPB Addons for Elementor – News Ticker, Timeline, Team & More Widgets
4 fiches
WPB Elementor Addons <= 1.6 – Authenticated (Contributor+) Stored Cross-Site Scripting
The WPB Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access…
*-1.6
Non indiqué
05/09/2025
WPB Elementor Addons <= 1.0.9 – Authenticated (Contributor+) Stored Cross-Site Scripting
The WPB Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the output of 'tags' added to widgets in all versions up to, and including, 1.0.9 due to insufficient input sanitization and output escaping on…
*-1.0.9
1.2
29/05/2024
WPB Elementor Addons <= 1.0.9 – Authenticated (Contributor+) Stored Cross-Site Scripting via url Parameter
The WPB Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in all versions up to, and including, 1.0.9 due to insufficient input sanitization and output escaping. This makes it possible for…
*-1.0.9
1.2
21/05/2024
WPB Elementor Addons <= 1.0.9 – Authenticated (Contributor+) Stored Cross-Site Scripting
The WPB Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including,
*-1.0.9
1.2
17/05/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.