IdeaBox Creations Vulnerabilities and Affected Products
Vulnerabilities associated with PowerPack Pro for Elementor.
Products
Clear product- PowerPack Lite for Beaver Builder2 vulnerabilities
- PowerPack Pro for Elementor2 vulnerabilities
- Dashboard Welcome for Beaver Builder1 vulnerability
- PowerPack Addons for Elementor1 vulnerability
- PowerPack for Beaver Builder1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-24844HIGH | WordPress PowerPack Pro for Elementor plugin <= 2.10.6 - Unauthenticated Plugin Settings Reset vulnerabilityMissing Authorization vulnerability in IdeaBox Creations PowerPack Pro for Elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PowerPack Pro for Elementor: from n/a through 2.10.6. CWE-862Dec 23, 2025 | CVSS7.5v3.1 | EPSS0.256% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-49739HIGH | WordPress PowerPack Pro for Elementor plugin <= 2.9.23 - Reflected Cross Site Scripting (XSS) vulnerabilityVulnerability in IdeaBox Creations PowerPack Pro for Elementor.This issue affects PowerPack Pro for Elementor: from n/a through 2.9.23. CWE-79Dec 14, 2023 | CVSS7.1v3.1 | EPSS0.416% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |