SecAlerts
exclusive addons logo

exclusive addons

Security Risk Profile

38
/100
low

Security Risk Score

Comprehensive risk assessment based on 19 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from March 13, 2024 to present

19
Total CVEs
1
Critical+High
1
Exploited
0
Unpatched

Threat Assessment

Avg CVSS
6.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
38/100
low
⚠️ 1 Active Exploits🆕 1Fresh (<7d)📈 1 in Last 30 Days

Severity Distribution

Critical
1
High
0
Medium
18
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
10

Age Distribution

Common Weaknesses (CWE)

1
XSS
17
2
Infoleak
1
3
Input Validation
1

Most Affected Products

1. Exclusiveaddons Exclusive Addons For Elementor Wordpress18
2. Exclusive Addons Exclusive Addons for Elementor11
3. Exclusive Addons Exclusive Addons Elementor5
4. WordPress Exclusive Addons for Elementor5
5. Exclusive Addons Elementor3

Recent Vulnerabilities

See more →
CVE-2026-12231
CVSS 6.4medium

Exclusive Addons for Elementor <= 2.7.9.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'exad_infobox_image'

8/2/2026🔧 No Patch
CVE-2025-7498
CVSS 6.4EPSS 0%medium

Exclusive Addons for Elementor <= 2.7.9.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown

8/6/2025🔧 No Patch
CVE-2025-4783
CVSS 6.4EPSS 0%medium

Exclusive Addons for Elementor <= 2.7.9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Timer Widget

5/26/2025🔧 No Patch
CVE-2025-1571
CVSS 6.4medium

Exclusive Addons for Elementor <= 2.7.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Animated Text and Image Comparison Widgets

2/28/2025
CVE-2024-10312
CVSS 4.3medium

Exclusive Addons for Elementor <= 2.7.4 - Authenticated (Contributor+) Sensitive Information Exposure via Elementor Templates

10/29/2024
CVE-2024-49292
CVSS 6.5EPSS 0%medium

WordPress Exclusive Addons for Elementor plugin <= 2.7.1 - Cross-Site Scripting vulnerability

10/17/2024
CVE-2024-4618
CVSS 6.4EPSS 0%medium

Exclusive Addons for Elementor <= 2.6.9.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Team Member Widget

5/15/2024🔧 No Patch
CVE-2024-33914
CVSS 9.8EPSS 0%critical

WordPress Exclusive Addons for Elementor plugin <= 2.6.9.1 - Broken Access Control on Post Duplication vulnerability

5/3/2024
CVE-2024-2751
CVSS 6.4medium

Exclusive Addons for Elementor <= 2.6.9.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via InfoBox

5/2/2024🔧 No Patch
CVE-2024-3489
CVSS 6.4EPSS 0%medium

Exclusive Addons for Elementor <= 2.6.9.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Expired Title

5/2/2024

Monitor exclusive addons in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.