CVE-2025-26769: WordPress Vertex Addons for Elementor plugin <= 1.2.0 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Webilia Inc. Vertex Addons for Elementor addons-for-elementor-builder allows Stored XSS.This issue affects Vertex Addons for Elementor: from n/a through <= 1.2.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-26769?
CVE-2025-26769 is classified as a high-severity vulnerability due to its potential for stored cross-site scripting (XSS) attacks.
How do I fix CVE-2025-26769?
To fix CVE-2025-26769, update the Vertex Addons for Elementor to the latest version beyond 1.2.0.
What impact does CVE-2025-26769 have on my website?
CVE-2025-26769 can allow malicious users to inject scripts into web pages viewed by other users, leading to data theft or session hijacking.
Are all versions of Vertex Addons for Elementor affected by CVE-2025-26769?
All versions of Vertex Addons for Elementor up to and including 1.2.0 are affected by CVE-2025-26769.
Is CVE-2025-26769 a known issue in the community?
Yes, CVE-2025-26769 has been reported and noted within the security community as a significant vulnerability related to cross-site scripting.