CVE-2024-13362
Unlimited Elements For Elementor
Minimum safe version
2.0.7
Update to 2.0.7 or later to address 38 fixable vulnerabilities
CVE-2026-4659
Unlimited Elements For Elementor <= 2.0.5 - Unauthenticated Stored Cross-Site Scripting via Form Entry Fields
CVE-2025-14274
CVE-2025-13692
Unlimited Elements For Elementor <= 1.5.148 - Authenticated (Contributor+) Stored Cross-Site Scripting
Unlimited Elements For Elementor <= 1.5.142 - Authenticated (Contributor+) Stored Cross-Site Scripting
CVE-2024-13155
CVE-2024-13153
CVE-2024-10784
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-49271
CVE-2024-45454
CVE-2024-6166
CVE-2024-6171
CVE-2024-6169
CVE-2024-6170
CVE-2024-5329
CVE-2024-35674
CVE-2024-3190
CVE-2023-6743
CVE-2024-4779
CVE-2024-3055
CVE-2024-3547
CVE-2024-2662
CVE-2024-0367
CVE-2024-29792
WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) Plugin < 1.5.75 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-31231
CVE-2023-31080
CVE-2023-3295
CVE-2023-33930
CVE-2023-31090
CVE-2022-47170
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Unauthorised AJAX Calls via Freemius
WordPress "Unlimited Elements For Elementor (Free Widgets, Addons, Templates)" plugin < 1.5.3 - Sensitive Information Disclosure vulnerability
WordPress "Unlimited Elements For Elementor (Free Widgets, Addons, Templates)" plugin < 1.5.3 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability