Medium severity6.5NVD Advisory· Published Jun 4, 2024· Updated Jun 17, 2026
CVE-2024-35666
CVE-2024-35666
Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themesflat Themesflat Addons For Elementor allows Stored XSS.This issue affects Themesflat Addons For Elementor: from n/a through 2.1.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:themesflat:themesflat_addons_for_elementor:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:themesflat:themesflat_addons_for_elementor:*:*:*:*:*:wordpress:*:*range: <=2.1.2
- (no CPE)range: n/a
- Range: <=2.1.2
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.