Pricing
Case studies
Login
Start trial
Jeg Elementor Kit
jegtheme
Developer
3.0.3
Latest version
400,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
19 patched
2 Mitigation rules
Authenticated (Contributor+) Cross-Site Scripting via Elementor Widget URL Custom Attributes vulnerability
<= 2.6.4
03/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget vulnerability
<= 2.6.4
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via Testimonial vulnerability
<= 2.6.3
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget vulnerability
<= 3.0.1
07/01/2026
Author+ Stored XSS vulnerability
< 2.7.0
24/10/2025
Authenticated (Contributor+) Stored Cross-Site Scripting via Video Button and Countdown Widgets vulnerability
<= 2.6.12
09/05/2025
Authenticated (Contributor+) Sensitive Information Exposure via Countdown and Off-Canvas vulnerability
<= 2.6.11
27/02/2025
WordPress Jeg Elementor Kit plugin <= 2.6.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Countdown Widget vulnerability
<= 2.6.9
25/11/2024
Authenticated (Contributor+) Sensitive Information Exposure via sg_content_template vulnerability
<= 2.6.9
25/11/2024
Cross Site Scripting (XSS) vulnerability
<= 2.6.8
30/09/2024
Authenticated (Author+) Stored Cross-Site Scripting via SVG File vulnerability
<= 2.6.7
27/08/2024
Authenticated Stored Cross-Site Scripting vulnerability
<= 2.6.5
14/06/2024
WordPress Jeg Elementor Kit plugin <= 2.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via JKit - Banner vulnerability
<= 2.6.4
29/04/2024
Cross Site Scripting (XSS) vulnerability
<= 2.6.3
22/04/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via Image Box andTestimonial vulnerability
<= 2.6.3
03/04/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via HTML Tags vulnerability
<= 2.6.2
21/03/2024
Cross Site Scripting (XSS) vulnerability
<= 2.6.2
15/03/2024
Unauthenticated Settings Update vulnerability
< 2.5.7
03/01/2023
Subscriber+ Authorization Bypass vulnerability
< 2.5.7
26/12/2022