Skip to content
Noroxi

unlimited-elements records

27 published records for vendor unlimited-elements.

All records

27 records
  • CVE-2023-3295
    35Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.66 - Authenticated (Contributor+) Arbitrary File Upload

    HighCVSS 8.8No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorJun 16, 2023

  • CVE-2023-6743
    35Monitor

    Unlimited Elements for Elementor <= 1.5.89 - Authenticated(Contributor+) Remote Code Execution via template import

    HighCVSS 8.8No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorMay 29, 2024

  • CVE-2024-3055
    35Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.102 - Authenticated (Contributor+) SQL Injection

    HighCVSS 8.8No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorMay 14, 2024

  • WordPress Unlimited Elements For Elementor plugin <= 1.5.60 - Unrestricted Zip Extraction vulnerability

    HighCVSS 8.8No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorApr 24, 2024

  • CVE-2024-1710
    35Monitor

    Addon Library <= 1.3.76 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Upload

    HighCVSS 8.8No exploitEPSS 1%

    unlimited-elements · addon libraryFeb 26, 2024

  • CVE-2024-5329
    35Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.109 - Authenticated (Contributor+) Blind SQL Injection via data[addonID] Parameter

    HighCVSS 8.8No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorJun 6, 2024

  • CVE-2024-6166
    35Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.112 - Authenticated (Contributor+) Time-Based SQL Injection

    HighCVSS 8.8No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementor \(free widgets\, addons\, templates\)Jul 9, 2024

  • CVE-2024-4779
    35Monitor

    Unlimited Elements for Elementor <= 1.5.107 - Authenticated (Contributor+) SQL Injection via data[post_ids][0]

    HighCVSS 8.8No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorMay 23, 2024

  • WordPress Unlimited Elements For Elementor plugin <= 1.5.65 - Multiple Broken Access Control vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorJun 9, 2024

  • WordPress Unlimited Elements For Elementor plugin <= 1.5.109 - Broken Access Control vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorJun 5, 2024

  • CVE-2024-2662
    29Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.102 - Authenticated (Admin+) Command Injection

    HighCVSS 7.2No exploitEPSS 2%

    unlimited-elements · unlimited elements for elementorMay 14, 2024

  • WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin <= 1.5.121 - Remote Code Execution (RCE) vulnerability

    HighCVSS 7.2No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorOct 16, 2024

  • WordPress Unlimited Elements For Elementor plugin <= 1.5.66 - Unrestricted Zip Extraction vulnerability

    HighCVSS 7.2No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorJun 4, 2024

  • WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) Plugin <= 1.5.65 is vulnerable to Arbitrary File Upload

    MediumCVSS 6.5No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementorDec 20, 2023

  • WordPress Unlimited Elements for Elementor plugin <= 1.5.93 - Reflected Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.1Proof of conceptEPSS 1%

    unlimited-elements · unlimited elements for elementorMar 27, 2024

  • CVE-2024-3547
    24Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.102 - Reflected Cross-Site Scripting

    MediumCVSS 6.1No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorMay 14, 2024

  • WordPress Unlimited Elements for Elementor plugin <= 1.5.121 - Reflected Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.1No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorOct 6, 2024

  • CVE-2024-6169
    21Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.112 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'username'

    MediumCVSS 5.4No exploitEPSS 1%

    unlimited-elements · unlimited elements for elementor \(free widgets\, addons\, templates\)Jul 9, 2024

  • CVE-2024-6170
    21Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.112 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'email'

    MediumCVSS 5.4No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementor \(free widgets\, addons\, templates\)Jul 9, 2024

  • Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.126 - Authenticated (Contributor+) Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorDec 12, 2024

  • Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.140 - Authenticated (Contributor+) Stored Cross-Site Scripting via Transparent Split H

    MediumCVSS 5.4No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorFeb 20, 2025

  • CVE-2024-0367
    21Monitor

    Unlimited Elements For Elementor <= 1.5.96 - Authenticated (Contributor+) Stored Cross-Site Scripting via Widget Link

    MediumCVSS 5.4No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorMar 30, 2024

  • Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.135 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets

    MediumCVSS 5.4No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorJan 9, 2025

  • CVE-2024-6171
    21Monitor

    Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 1.5.112 - IP Address Spoofing to Antispam Bypass

    MediumCVSS 5.3No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementor \(free widgets\, addons\, templates\)Jul 9, 2024

  • CVE-2025-1663
    21Monitor

    Unlimited Elements For Elementor <= 1.5.142 - Authenticated (Contributor+) Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 0%

    unlimited-elements · unlimited elements for elementorApr 3, 2025