VYPR

Xpro Elementor Addons Pro

by WordPress

CVEs (1)

  • CVE-2025-0898MedMay 27, 2026
    risk 0.42cvss 6.5epss

    The Xpro Elementor Addons - Pro plugin for WordPress is vulnerable to Arbitrary File Reading in all versions up to, and including, 1.4.7 via the Draw SVG widget. This makes it possible for authenticated attackers, with Contributor-level access and above, to read the contents of…