Showing 1 vulnerability on this page for Elements Kit Pro

Signals CISA KEV Ransomware Nuclei
wpmet vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

ElementsKit and ElementsKit Pro < 2.2.0 - Contributor+ Stored XSS

The Elements Kit Lite and Elements Kit Pro WordPress Plugins before 2.2.0 have a number of widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.

CWE-79May 5, 2021
CVSS5.4v3.1EPSS0.626%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX