Medium 6.4 Unfixed
2025-04-18≤ 2.4.36
Piotnet Addons For Elementor <= 2.4.36 - Authenticated (Contributor+) Stored Cross-Site Scripting
Minimum safe version
2.4.33
Update to 2.4.33 or later to address 9 fixable vulnerabilities
Piotnet Addons For Elementor <= 2.4.36 - Authenticated (Contributor+) Stored Cross-Site Scripting
WordPress Piotnet Addons For Elementor plugin <= 2.4.36 - Cross Site Scripting (XSS) vulnerability
CVE-2024-10775
Piotnet Addons For Elementor <= 2.4.31 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Heading Widget
CVE-2025-22333
CVE-2024-5502
WordPress Piotnet Addons For Elementor Plugin <= 2.4.29 is vulnerable to Sensitive Data Exposure
CVE-2024-4262
WordPress Piotnet Addons For Elementor Plugin <= 2.4.26 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-33630
CVE-2024-29934