Skip to content
Noroxi

element-plus records

2 published records for vendor element-plus.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
50%
Median publish → KEV
No record has entered KEV

Records by year

  1. 22
  2. 25

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

2 records
  • Element Plus Link component (el-link) through 2.10.6 implements insufficient input validation for the href attribute, creating a security ab

    MediumCVSS 6.4No exploitEPSS 0%

    element-plus · element-plusSep 9, 2025

  • element-plus 2.0.5 is vulnerable to Cross Site Scripting (XSS) via el-table-column.

    MediumCVSS 6.1No exploitEPSS 1%

    element-plus · element-plusApr 25, 2022