Pricing
Case studies
Login
Start trial
Elementor Pro
Elementor
Developer
N/A
Latest version
N/A
Installations
N/A
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
14 patched
4 Mitigation rules
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 3.29.0
31/12/2025
Cross Site Scripting (XSS) vulnerability
<= 3.29.0
19/06/2025
Authenticated (Contributor+) Sensitive Information Exposure via Shortcode vulnerability
<= 3.25.10
30/01/2025
Reflected Cross Site Scripting (XSS) vulnerability
<= 3.21.2
28/06/2024
Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting vulnerability
<= 3.21.0
03/05/2024
Auth. Stored Cross-Site Scripting (XSS) vulnerability
<= 3.20.1
26/03/2024
Auth. Stored Cross-Site Scripting (XSS) vulnerability
<= 3.20.1
26/03/2024
Auth. DOM-Based Stored Cross-Site Scripting (XSS) vulnerability
<= 3.20.1
26/03/2024
Auth. Stored Cross-Site Scripting (XSS) vulnerability
<= 3.20.1
26/03/2024
Auth. Stored Cross-Site Scripting (XSS) vulnerability
<= 3.20.1
26/03/2024
Contributor+ Arbitrary User Meta Data Retrieval vulnerability
<= 3.19.2
26/02/2024
Auth. Broken Access Control vulnerability
<= 3.13.0
20/06/2023
Authenticated Arbitrary Options Change vulnerability
<= 3.11.6
28/03/2023
Authenticated Arbitrary File Upload vulnerability
<= 2.9.3
06/05/2020