Filter
-Infinity
0

WordPress Wp Social Login and Register Social CounterWp Social Login and Register Social Counter <= 3.1.0 - Cross-Site Request Forgery to Settings Update

First published (updated )

ElementsKit Elementor AddonsElementsKit Elementor addons <= 3.4.0 - Unauthenticated Information Exposure via get_megamenu_content Function

First published (updated )

ElementsKit Elementor AddonsElementsKit Elementor addons <= 3.4.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Accordion Widget

First published (updated )

ElementsKitElementsKit Pro <= 3.7.8 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via url Parameter

First published (updated )

MetForm Contact Form, Survey, Quiz, & Custom Form Builder for ElementorWordPress Metform Elementor Contact Form Builder plugin <= 3.4.0 - Broken Access Control vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wpmet ElementsKit Elementor AddonsElementsKit Elementor addons <= 3.2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Comparison Widget

First published (updated )

Wpmet ElementsKit Elementor AddonsElementsKit Elementor addons <= 3.2.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Video Widget

EPSS
0.05%
First published (updated )

ElementsKitWordPress ElementsKit Pro plugin <= 3.6.0 - Local File Inclusion vulnerability

First published (updated )

Wpmet Metform Elementor Contact Form BuilderMetform Elementor Contact Form Builder <= 3.2.4 - Unauthenticated Double-Extension Arbitrary File Upload

First published (updated )

ElementsKitElementsKit Pro <= 3.6.6 - Authenticated (Contributor+) Sensitive Information Exposure

EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ElementsKitElementsKit Pro <= 3.6.5 - Authenticated (Contributor+) Stored Cross-Site Scripting

EPSS
0.04%
First published (updated )

Wpmet FundengineFundEngine – Donation and Crowdfunding Platform <= 1.7.0 - Authenticated (Subscriber+) Privilege Escalation

8.8
EPSS
0.05%
First published (updated )

Wpmet ElementsKit Elementor AddonsElementsKit Elementor addons <= 3.2.0 - Unauthenticated Information Exposure via ekit_widgetarea_content Function

EPSS
0.05%
First published (updated )

ElementsKitElementsKit Elementor addons and Templates Library <= 3.6.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Motion Text and Table Widgets

EPSS
0.04%
First published (updated )

ElementsKitElementsKit PRO <= 3.6.1 - Authenticated (Contributor+) Server-Side Request Forgery

EPSS
0.05%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WP Fundraising Donation and Crowdfunding PlatformWordPress FundEngine – Donation and Crowdfunding Platform plugin <= 1.6.4 - Broken Access Control vulnerability

First published (updated )

WordPress Metform Elementor Contact Form BuilderMetForm – Contact Form, Survey, Quiz, & Custom Form Builder for Elementor <= 3.8.8 - Unauthenticated Sensitive Information Exposure

7.5
EPSS
0.05%
First published (updated )

ElementsKitElementsKit Pro <= 3.6.1 - Authenticated (Contributor+) Stored Cross-Site Scripting

EPSS
0.04%
First published (updated )

WP Ultimate ReviewWordPress WP Ultimate Review plugin <= 2.2.5 - Review Score Manipulation vulnerability

First published (updated )

WP Ultimate ReviewWordPress Wp Ultimate Review plugin <= 2.3.2 - IP limit Bypass vulnerability

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

MetForm Contact Form, Survey, Quiz, & Custom Form Builder for ElementorWordPress MetForm plugin <= 3.8.3 - Broken Access Control vulnerability

8.8
EPSS
0.04%
First published (updated )

ElementsKitThe ElementsKit Pro plugin for WordPress is vulnerable to Local File Inclusion in all versions up to…

8.8
EPSS
0.04%
First published (updated )

Wpmet ElementsKit Elementor AddonsXSS

EPSS
0.04%
First published (updated )

Wpmet ElementsKit Elementor AddonsThe ElementsKit Elementor addons plugin for WordPress is vulnerable to Local File Inclusion in all v…

8.8
EPSS
0.05%
First published (updated )

WP Ultimate ReviewWordPress WP Ultimate Review plugin <= 2.2.5 - Broken Access Control on Review vulnerability

7.5
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WP Ultimate ReviewWordPress WP Ultimate Review plugin <= 2.2.5 - Insecure Direct Object References (IDOR) vulnerability

7.5
EPSS
0.04%
First published (updated )

ElementsKitXSS

EPSS
0.04%
First published (updated )

ElementsKit Elementor AddonsWordPress ElementsKit Elementor addons plugin <= 3.0.6 - Cross Site Scripting (XSS) vulnerability

EPSS
0.04%
First published (updated )

Wpmet ElementsKit Elementor AddonsXSS

First published (updated )

Wpmet Metform Elementor Contact Form BuilderXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203