VYPR

Enter Addons

by WordPress

CVEs (4)

  • CVE-2024-7611MedSep 6, 2024
    risk 0.42cvss 6.4epss 0.00

    The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag' attribute of the Events Card widget in all versions up to, and including, 2.1.8 due to insufficient input sanitization and output escaping…

  • CVE-2024-3831MedMay 14, 2024
    risk 0.42cvss 6.4epss 0.00

    The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Heading widget in all versions up to, and including, 2.1.5 due to insufficient input sanitization and output escaping. This makes it possible…

  • CVE-2024-3680MedMay 14, 2024
    risk 0.42cvss 6.4epss 0.00

    The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Animation Title widget's img tag in all versions up to, and including, 2.1.5 due to insufficient input sanitization and output escaping. This…

  • CVE-2024-10868MedNov 23, 2024
    risk 0.28cvss 4.3epss 0.00

    The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.1.9 via the Advanced Tabs widget due to insufficient restrictions on which posts can be included. This makes it…