Skip to content
Noroxi

jegtheme records

16 published records for vendor jegtheme.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
18.8%
Median publish → KEV
No record has entered KEV

All records

16 records
  • CVE-2022-3805
    30Monitor

    Jeg Elementor Kit <= 2.5.6 - Unauthenticated Authorization Bypass

    HighCVSS 7.5Proof of conceptEPSS 2%

    jegtheme · jeg elementor kitDec 22, 2022

  • CVE-2024-3819
    21Monitor

    Jeg Elementor Kit <= 2.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Banner

    MediumCVSS 5.4No exploitEPSS 1%

    jegtheme · jeg elementor kitMay 2, 2024

  • CVE-2024-1326
    21Monitor

    Jeg Elementor Kit <= 2.6.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via HTML Tags

    MediumCVSS 5.4No exploitEPSS 1%

    jegtheme · jeg elementor kitMar 20, 2024

  • CVE-2024-3161
    21Monitor

    Jeg Elementor Kit <= 2.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitMay 2, 2024

  • WordPress Jeg Elementor Kit plugin <= 2.6.3 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitApr 24, 2024

  • CVE-2024-4479
    21Monitor

    Jeg Elementor Kit <= 2.6.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Tabs and JKit - Accordion Widgets

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitJun 14, 2024

  • CVE-2024-0334
    21Monitor

    Jeg Elementor Kit <= 2.6.4 - Authenticated (Contributor+) Cross-Site Scripting via Elementor Widget URL Custom Attributes

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitMay 1, 2024

  • WordPress Jeg Elementor Kit plugin <= 2.6.2 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitMar 19, 2024

  • CVE-2024-6804
    21Monitor

    Jeg Elementor Kit <= 2.6.7 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitAug 27, 2024

  • CVE-2024-1327
    21Monitor

    Jeg Elementor Kit <= 2.6.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Box

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitApr 2, 2024

  • CVE-2024-3162
    21Monitor

    Jeg Elementor Kit <= 2.6.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Testimonial

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitApr 2, 2024

  • Jeg Elementor Kit <= 2.6.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Countdown Widget

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitNov 26, 2024

  • WordPress Jeg Elementor Kit plugin <= 2.6.8 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 0%

    jegtheme · jeg elementor kitOct 5, 2024

  • CVE-2022-3794
    17Monitor

    Jeg Elementor Kit <= 2.5.6 - Authorization Bypass

    MediumCVSS 4.3No exploitEPSS 1%

    jegtheme · jeg elementor kitDec 22, 2022

  • CVE-2024-8899
    17Monitor

    Jeg Elementor Kit <= 2.6.9 - Authenticated (Contributor+) Sensitive Information Exposure via sg_content_template

    MediumCVSS 4.3No exploitEPSS 0%

    jegtheme · jeg elementor kitNov 26, 2024

  • Jeg Elementor Kit <= 2.6.11 - Authenticated (Contributor+) Sensitive Information Exposure via Countdown and Off-Canvas

    MediumCVSS 4.3No exploitEPSS 0%

    jegtheme · jeg elementor kitFeb 27, 2025