Pricing
Case studies
Login
Start trial
The Plus Addons for Elementor Page Builder Lite
POSIMYTH
Developer
6.4.11
Latest version
100,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
33 patched
1 Mitigation rules
WordPress The Plus Addons for Elementor - Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerce plugin <= 6.4.7 - Unauthenticated Email Relay vulnerability
<= 6.4.7
24/02/2026
Incorrect Authorization to Authenticated (Author+) Arbitrary Draft Post Creation via 'post_type' vulnerability
<= 6.4.7
18/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 5.4.2
03/02/2026
Authenticated (Contributor+) Local File Inclusion via Team Member Listing vulnerability
<= 5.4.1
02/02/2026
Authenticated (Contibutor+) Stored Cross-Site Scripting via Hover Card vulnerability
<= 5.5.4
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via Age Gate vulnerability
<= 5.4.2
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes vulnerability
<= 5.4.2
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget vulnerability
<= 5.4.2
02/02/2026
WordPress The Plus Addons for Elementor - Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin <= 5.5.2 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 5.5.1
02/02/2026
WordPress The Plus Addons for Elementor - Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin <= 5.5.2 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 5.5.2
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via TP Page Scroll Widget vulnerability
<= 5.6.2
02/02/2026
WordPress The Plus Addons for Elementor - Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin <= 5.6.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Testimonials Widget Settings vulnerability
<= 5.6.2
02/02/2026
Author+ Stored XSS vulnerability
< 6.3.16
13/10/2025
Broken Access Control Vulnerability
<= 6.3.13
14/08/2025
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 6.3.10
31/07/2025
Cross Site Scripting (XSS) vulnerability
<= 6.2.7
30/05/2025
Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets vulnerability
<= 6.2.2
08/03/2025
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 6.1.8
03/02/2025
Cross Site Scripting (XSS) vulnerability
<= 5.6.14
02/12/2024
Authenticated (Contributor+) Sensitive Information Exposure via Elementor Templates vulnerability
<= 6.0.3
19/11/2024
Authenticated (Contributor+) Sensitive Information Exposure
<= 5.6.11
10/10/2024
Cross Site Scripting (XSS) vulnerability
<= 5.6.2
28/08/2024
Broken Access Control vulnerability
<= 5.6.2
26/08/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via Video Widget vulnerability
<= 5.6.2
20/08/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget vulnerability
<= 5.6.1
03/07/2024
WordPress The Plus Addons for Elementor plugin <= 5.6.0- Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 5.6.0
27/06/2024
Cross Site Scripting (XSS) vulnerability
<= 5.5.4
06/06/2024
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 5.5.4
24/05/2024
Cross Site Scripting (XSS) vulnerability
<= 5.4.2
03/05/2024
Authenticated (Contributor+) Local File Inclusion vulnerability
<= 5.4.1
26/03/2024
Authenticated (Contributor+) Stored Cross-Site Scripting Header Meta Content Widget vulnerability
<= 5.4.0
07/03/2024
Cross Site Scripting (XSS) vulnerability
<= 5.3.3
30/01/2024
Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities
<= 2.0.5
13/04/2021