CVE-2025-5338Royal Elementor Addons <= 1.7.1028 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Multiple Widgets | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published06/26/2025 | SeverityMedium |
|---|
CVE-2025-3813Royal Elementor Addons and Templates <= 1.7.1020 - Authenticated (Contributor+) Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published05/31/2025 | SeverityMedium |
|---|
CVE-2025-39361WordPress Royal Elementor Addons plugin <= 1.7.1017 - Cross Site Scripting (XSS) vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published05/07/2025 | SeverityMedium |
|---|
CVE-2024-12120Royal Elementor Addons and Templates <= 1.7.1017 - Authenticated (Contributor+) Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published05/07/2025 | SeverityMedium |
|---|
CVE-2025-26990WordPress Royal Elementor Addons plugin <= 1.7.1006 - Server Side Request Forgery (SSRF) vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published04/15/2025 | SeverityMedium |
|---|
CVE-2025-1456Royal Elementor Addons and Templates <= 1.7.1012 - Authenticated DOM-Based (Contributor+) Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published04/12/2025 | SeverityMedium |
|---|
CVE-2025-1455Royal Elementor Addons and Templates <= 1.7.1012 - Authenticated (Contributor+) Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published04/12/2025 | SeverityMedium |
|---|
CVE-2025-1441Royal Elementor Addons and Templates <= 1.7.1007 - Cross-Site Request Forgery to Reflected Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/19/2025 | SeverityMedium |
|---|
CVE-2025-0393Royal Elementor Addons and Templates <= 1.7.1006 - Cross-Site Request Forgery to Reflected Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/14/2025 | SeverityMedium |
|---|
CVE-2024-56062WordPress Royal Elementor Addons and Templates plugin <= 1.3.987 - Cross Site Scripting (XSS) vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published12/31/2024 | SeverityMedium |
|---|
CVE-2024-56226WordPress Royal Elementor Addons plugin <= 1.7.1001 - Reflected Cross Site Scripting (XSS) vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published12/31/2024 | SeverityHigh |
|---|
CVE-2024-56227WordPress Royal Elementor Addons plugin <= 1.7.1001 - Broken Access Control vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published12/31/2024 | SeverityMedium |
|---|
CVE-2024-10798Royal Elementor Addons and Templates <= 1.7.1003 - Authenticated (Contributor+) Post Disclosure | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published11/28/2024 | SeverityMedium |
|---|
CVE-2024-9682Royal Elementor Addons and Templates <= 1.7.1001 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Form Builder Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published11/13/2024 | SeverityMedium |
|---|
CVE-2024-9668Royal Elementor Addons and Templates <= 1.7.1001 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published11/13/2024 | SeverityMedium |
|---|
CVE-2024-9059Royal Elementor Addons and Template <= 1.7.1001 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Google Maps Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published11/13/2024 | SeverityMedium |
|---|
CVE-2024-50442WordPress Royal Elementor Addons and Templates plugin <= 1.3.980 - XML External Entity (XXE) vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published10/28/2024 | SeverityMedium |
|---|
CVE-2024-7417Royal Elementor Addons and Templates <= 1.3.986 - Authenticated (Subscriber+) Private Post Disclosure | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published10/17/2024 | SeverityMedium |
|---|
CVE-2024-8482Royal Elementor Addons and Templates <= 1.3.986 - Authenticated (Contributor+) Stored Cross-Site Scripting via Team Member Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published10/08/2024 | SeverityMedium |
|---|
CVE-2024-44001WordPress Royal Elementor Addons and Templates plugin <= 1.3.982 - Cross Site Scripting (XSS) vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published09/17/2024 | SeverityMedium |
|---|
CVE-2024-5818Royal Elementor Addons and Templates <= 1.3.980 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Magazine Grid/Slider Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published07/24/2024 | SeverityMedium |
|---|
CVE-2024-4488Royal Elementor Addons and Templates <= 1.3.976 - Authenticated (Contributor+) Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published06/07/2024 | SeverityMedium |
|---|
CVE-2024-4489Royal Elementor Addons and Templates <= 1.3.976 - Authenticated (Author+) Stored Cross-Site Scripting via SVG Uploads | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published06/07/2024 | SeverityMedium |
|---|
CVE-2024-4087Royal Elementor Addons and Templates <= 1.3.975 - Authenticated (Contributor+) Stored Cross-Site Scripting via Back to Top Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published06/01/2024 | SeverityMedium |
|---|
CVE-2024-4342Royal Elementor Addons and Templates <= 1.3.975 - Authenticated (Contributor+) Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published06/01/2024 | SeverityMedium |
|---|
CVE-2024-32786WordPress Royal Elementor Addons and Templates plugin <= 1.3.93 - IP Bypass vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published05/17/2024 | SeverityMedium |
|---|
CVE-2024-3887Royal Elementor Addons and Templates <= 1.3.974 - Authenticated (Contributor+) Stored Cross-Site Scripting via Form Builder Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published05/16/2024 | SeverityMedium |
|---|
CVE-2024-1567Royal Elementor Addons and Templates <= 1.3.94 - Unauthenticated Limited File Upload | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published05/02/2024 | SeverityHigh |
|---|
CVE-2024-3675Royal Elementor Addons and Templates <= 1.3.971 - Authenticated (Contributor+) Stored Cross-Site Scripting via Flip Carousel, Flip Box, Post Grid, and Taxonomy List Widget Attributes | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published05/02/2024 | SeverityMedium |
|---|
CVE-2024-3889Royal Elementor Addons and Templates <= 1.3.971 - Authenticated (Contributor+) Stored Cross-Site Scripting via Advanced Accordion Title Tags | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published04/23/2024 | SeverityMedium |
|---|
CVE-2024-2798Royal Elementor Addons and Templates <= 1.3.971 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published04/23/2024 | SeverityMedium |
|---|
CVE-2024-2799Royal Elementor Addons and Templates <= 1.3.971 - Authenticated (Contributor+) Stored Cross-Site Scripting via HTML Tags | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published04/23/2024 | SeverityMedium |
|---|
CVE-2024-31236WordPress Royal Elementor Addons plugin <= 1.3.93 - Cross Site Scripting (XSS) vulnerability | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons | Published04/07/2024 | SeverityMedium |
|---|
CVE-2024-1500Royal Elementor Addons and Templates <= 1.3.91 - Authenticated (Contributor+) Stored Cross-Site Scripting via Logo Widget | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published03/07/2024 | SeverityMedium |
|---|
CVE-2024-0516Royal Elementor Addons and Templates <= 1.3.87 - Missing Authorization via wpr_update_form_action_meta | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/20/2024 | SeverityMedium |
|---|
CVE-2024-0512Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via add_to_wishlist | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/20/2024 | SeverityMedium |
|---|
CVE-2024-0514Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via add_to_compare | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/20/2024 | SeverityMedium |
|---|
CVE-2024-0515Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via remove_from_compare | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/20/2024 | SeverityMedium |
|---|
CVE-2024-0513Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via remove_from_wishlist | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/20/2024 | SeverityMedium |
|---|
CVE-2024-0442Royal Elementor Addons and Templates <= 1.3.87 - Authenticated (Contributor+) Stored Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/20/2024 | SeverityMedium |
|---|
CVE-2024-0511Royal Elementor Addons and Templates <= 1.3.87 - Cross-Site Request Forgery via wpr_update_form_action_meta | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published02/08/2024 | SeverityMedium |
|---|
CVE-2024-0835Royal Elementor Kit <= 1.0.116 - Missing Authorization to Arbitrary Transient Update | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Kit | Published02/05/2024 | SeverityMedium |
|---|
CVE-2023-5922Royal Elementor Addons and Templates < 1.3.81 - Unauthenticated Arbitrary Post Read | Exploitation statusPublic exploit | FixYes | Affected productR Royal Elementor Addons and Templates | Published01/16/2024 | SeverityHigh |
|---|
CVE-2023-5360Royal Elementor Addons and Templates < 1.3.79 - Unauthenticated Arbitrary File Upload | Exploitation statusPublic exploit | FixYes | Affected productR Royal Elementor Addons and Templates | Published10/31/2023 | SeverityUnknown |
|---|
CVE-2022-47175WordPress Royal Elementor Addons Plugin <= 1.3.75 is vulnerable to Cross Site Request Forgery (CSRF) | Exploitation statusNot known exploited | FixYes | Affected productR Royal Elementor Addons and Templates | Published10/06/2023 | SeverityMedium |
|---|
CVE-2023-3709Royal Elementor Addons <=1.3.70 - Unauthenticated MailChimp API Key Disclosure | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published07/18/2023 | SeverityMedium |
|---|
CVE-2022-4707Royal Elementor Addons <= 1.3.59 - Cross-Site Request Forgery to Menu Template creation | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4701Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Plugin Activation | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4703Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Import Deletion | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4705Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Template Activation | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4704Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Template Import | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4710Royal Elementor Addons <= 1.3.59 - Reflected Cross-Site Scripting | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4708Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Template Conditions Modification | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4711Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Menu Settings Update | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4702Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Plugin Deactivation | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4700Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Theme Activation | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4709Royal Elementor Addons <= 1.3.59 - Insufficient Access Control to Template Kit Import | Exploitation statusNot known exploited | FixYes | Affected productR Royal Addons for Elementor – Addons and Templates Kit for Elementor | Published01/10/2023 | SeverityMedium |
|---|
CVE-2022-4102Royal Elementor Addons < 1.3.56 - Subscriber+ Arbitrary Post Deletion | Exploitation statusPublic exploit | FixYes | Affected productR Royal Elementor Addons (Elementor Templates, Post Grid, Mega Menu & Header Footer Builder, WooCommerce Builder, Product Grid, Slider, Parallax Image & other Free Elementor Widgets) | Published01/09/2023 | SeverityLow |
|---|
CVE-2022-4103Royal Elementor Addons < 1.3.56 - Subscriber+ Arbitrary Post Creation | Exploitation statusPublic exploit | FixYes | Affected productR Royal Elementor Addons (Elementor Templates, Post Grid, Mega Menu & Header Footer Builder, WooCommerce Builder, Product Grid, Slider, Parallax Image & other Free Elementor Widgets) | Published01/09/2023 | SeverityMedium |
|---|