Pricing
Case studies
Login
Start trial
LA-Studio Element Kit for Elementor
LA-Studio
Developer
1.5.5.4
Latest version
20,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
14 fixed
2 Mitigation rules
Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets vulnerability
<= 1.5.5.1
Sep 6, 2025
Authenticated (Contributor+) Stored Cross-Site Scripting via Image Compare and Google Maps Widgets vulnerability
<= 1.5.2
May 30, 2025
Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via data-lakit-element-link Parameter vulnerability
<= 1.5.2
May 30, 2025
Cross Site Scripting (XSS) vulnerability
<= 1.5.1
Apr 4, 2025
Authenticated (Contributor+) Post Disclosure vulnerability
<= 1.4.4
Dec 3, 2024
Authenticated (Contributor+) Local File Inclusion vulnerability
<= 1.4.2
Nov 22, 2024
Cross Site Scripting (XSS) vulnerability
<= 1.3.9.3
Sep 30, 2024
Cross Site Scripting (XSS) vulnerability
<= 1.3.9.2
Aug 9, 2024
Local File Inclusion vulnerability
<= 1.3.8.1
Jul 2, 2024
Broken Access Control vulnerability
<= 1.3.6
Jun 6, 2024
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 1.3.7.6
May 23, 2024
Authenticated (Contributor+) Stored Cross-Site Scripting via LaStudioKit Post Author Widget vulnerability
<= 1.3.7.5
May 3, 2024
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 1.3.7.4
Mar 14, 2024
Broken Access Control vulnerability
<= 1.1.5
Dec 26, 2023