SecAlerts
ideabox logo

ideabox

Security Risk Profile

49
/100
medium

Security Risk Score

Comprehensive risk assessment based on 19 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from May 5, 2021 to present

19
Total CVEs
6
Critical+High
0
Exploited
1
Unpatched

Threat Assessment

Avg CVSS
6.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
49/100
medium

Severity Distribution

Critical
0
High
6
Medium
13
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
3

Age Distribution

Common Weaknesses (CWE)

1
XSS
14
2
CSRF
1

Most Affected Products

1. IdeaBox Powerpack Addons For Elementor Wordpress11
2. IdeaBox Powerpack For Beaver Builder Wordpress6
3. Beaver Builder PowerPack Lite2
4. IdeaBox PowerPack for Beaver Builder1
5. WordPress PowerPack for Beaver Builder1

Recent Vulnerabilities

See more →
CVE-2024-12239
CVSS 6.1medium

PowerPack Lite for Beaver Builder <= 1.3.0.5 - Reflected Cross-Site Scripting via Navigate Parameter

12/17/2024🔧 No Patch
CVE-2024-43330
CVSS 7.1high

WordPress PowerPack for Beaver Builder plugin < 2.37.4 - Reflected Cross Site Scripting (XSS) vulnerability

8/18/2024
CVE-2024-39633
CVSS 8.8high

WordPress PowerPack for Beaver Builder plugin <= 2.33.0 - Contributor+ Privilege Escalation vulnerability

8/1/2024
CVE-2024-39634
CVSS 8.8high

WordPress PowerPack Pro for Elementor plugin <= 2.10.14 - Contributor+ Privilege Escalation vulnerability

8/1/2024
CVE-2024-37409
CVSS 5.9medium

WordPress PowerPack Lite for Beaver Builder plugin <= 1.3.0.4 - Cross Site Scripting (XSS) vulnerability

7/22/2024
CVE-2024-37410
CVSS 7.2high

WordPress PowerPack Lite for Beaver Builder plugin <= 1.3.0.3 - Local File Inclusion vulnerability

7/9/2024
CVE-2024-5787
CVSS 6.4EPSS 0%medium

PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) <= 2.7.20 - Authenticated (Contributor+) Stored Cross-Site Scripting via Link Effects Widget

6/13/2024🔧 No Patch
CVE-2024-3668
CVSS 8.8high

PowerPack Pro for Elementor <= 2.10.17 - Authenticated (Contributor+) Privilege Escalation

6/8/2024🔧 No Patch
CVE-2024-5327
CVSS 6.4EPSS 0%medium

PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) <= 2.7.19 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting

5/30/2024🔧 No Patch
CVE-2024-2289
CVSS 6.4medium

PowerPack Lite for Beaver Builder <= 1.3.0 - Authenticated(Contributor+) Stored Cross-Site Scripting via element link

4/9/2024🔧 No Patch

Monitor ideabox in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

ideabox Security Vulnerabilities & Risk Score | 19 CVEs | SecAlerts - SecAlerts