Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
CVE-2026-61976 - Elementor Plugin
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblock JetBlocks For Elementor jet-blocks allows Retrieve Embedded Sensitive Data.This issue affects JetBlocks For Elementor: from n/a through
CVE-2026-61976
CVE-2026-57804 - Elementor Plugin
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CodexThemes TheGem Theme Elements (for Elementor) thegem-elements-elementor allows PHP Local File Inclusion.This issue affects TheGem Theme Elements (for Elementor): from n/a through
CVE-2026-57804
CVE-2026-57718 - Elementor Plugin
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) unlimited-elements-for-elementor allows Reflected XSS.This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through
CVE-2026-57718
CVE-2026-57376 - Elementor Plugin
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows DOM-Based XSS.This issue affects ElementInvader Addons for Elementor: from n/a through
CVE-2026-57376
CVE-2026-59511 - Elementor Plugin
Insertion of Sensitive Information Into Sent Data vulnerability in Tim Strifler Exclusive Addons Elementor allows Retrieve Embedded Sensitive Data. This issue affects Exclusive Addons Elementor: from n/a through 2.7.9.9.
CVE-2026-59511
CVE-2026-56028 - Elementor Plugin
Unauthenticated Privilege Escalation in Easy Elements for Elementor – Addons & Website Templates
CVE-2026-56028
CVE-2026-57620 - Elementor Plugin
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor allows Stored XSS. This issue affects Exclusive Addons Elementor: from n/a through 2.7.9.8.
CVE-2026-57620
CVE-2026-40720 - Elementor Plugin
Unauthenticated Cross Site Scripting (XSS) in Royal Elementor Addons Pro < 1.7.1041 versions.
CVE-2026-40720
CVE-2026-42629 - Elementor Plugin
Unauthenticated Broken Authentication in PowerPack Pro for Elementor < v2.13.0 versions.
CVE-2026-42629
CVE-2026-39597 - Elementor Plugin
Unauthenticated Cross Site Scripting (XSS) in WPZOOM Addons for Elementor
CVE-2026-39597
CVE-2026-27041 - Elementor Plugin
Contributor Arbitrary File Upload in Unlimited Elements for Elementor (Premium)
CVE-2026-27041
CVE-2026-9691 - Elementor Plugin
Unauthenticated PHP Object Injection in Integration for ActiveCampaign and Contact Form 7, WPForms, Elementor, Ninja Forms
CVE-2026-9691
CVE-2026-49765 - Elementor Plugin
Unauthenticated PHP Object Injection in Integration for Mailchimp and Contact Form 7, WPForms, Elementor, Ninja Forms
CVE-2026-49765
CVE-2026-49109 - Elementor Plugin
Unauthenticated PHP Object Injection in Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms
CVE-2026-49109
CVE-2026-49105 - Elementor Plugin
Unauthenticated PHP Object Injection in WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms
CVE-2026-49105
CVE-2026-49104 - Elementor Plugin
Unauthenticated PHP Object Injection in Integration for Keap/infusionsoft and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms
CVE-2026-49104
CVE-2026-49085 - Elementor Plugin
Unauthenticated PHP Object Injection in WP Insightly for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms
CVE-2026-49085
CVE-2026-48870 - Elementor Plugin
Subscriber Cross Site Scripting (XSS) in King Addons for Elementor
CVE-2026-48870
CVE-2026-45437 - Elementor Plugin
Unauthenticated Cross Site Scripting (XSS) in Product Filter Widget for Elementor
CVE-2026-45437
CVE-2026-25440 - Elementor Plugin
Unauthenticated Broken Access Control in Essential Addons for Elementor < 6.6.0 versions.
CVE-2026-25440
