Extension WordPress
Vulnérabilités X Addons for Elementor
Cette page rassemble les failles publiées pour X Addons for Elementor, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de X Addons for Elementor
4 fiches
X Addons for Elementor <= 1.0.23 – Missing Authorization
The X Addons for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.0.23. This makes it possible for authenticated attackers, with contributor-level…
*-1.0.23
Non indiqué
14/01/2026
X Addons for Elementor <= 1.0.23 – Authenticated (Contributor+) Stored Cross-Site Scripting
The X Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.0.23 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level…
*-1.0.23
Non indiqué
07/01/2026
X Addons for Elementor <= 1.0.16 – Authenticated (Contributor+) Stored Cross-Site Scripting via Youtube Video ID Field
The X Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Youtube Video ID field in all versions up to, and including, 1.0.16. This is due to insufficient input sanitization and output escaping…
*-1.0.16
1.0.17
03/10/2025
X Addons for Elementor <= 1.0.16 – Authenticated (Contributor+) Stored Cross-Site Scripting
The X Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.0.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level…
*-1.0.16
1.0.17
16/05/2025
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.