Royal elementor addons
This hub aggregates every CVE we track for Royal elementor addons, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
63
CVEs tracked
1
Critical
4
High
0
In CISA KEV
Severity distribution
MEDIUM57HIGH4LOW1CRITICAL1
Monthly trend
1
3
4
3
1
1
0
4
3
1
0
0
0
0
0
0
0
0
1
1
2
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Royal elementor addons.
- CVE-2026-25436WordPress Royal Elementor Addons plugin < 1.7.1053 - Broken Access Control vulnerability5.3
- CVE-2026-27421WordPress Royal Elementor Addons plugin < 1.7.1053 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2026-40763WordPress Royal Elementor Addons plugin <= 1.7.1056 - Broken Access Control vulnerability5.3
- CVE-2026-28135WordPress Royal Elementor Addons plugin <= 1.7.1052 - Other vulnerability Type vulnerability8.2
- CVE-2025-5338Royal Elementor Addons <= 1.7.1028 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Multiple Widgets6.4
- CVE-2025-3813Royal Elementor Addons and Templates <= 1.7.1020 - Authenticated (Contributor+) Stored Cross-Site Scripting6.4
- CVE-2025-39361WordPress Royal Elementor Addons plugin <= 1.7.1017 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2024-12120Royal Elementor Addons and Templates <= 1.7.1017 - Authenticated (Contributor+) Stored Cross-Site Scripting5.4
- CVE-2025-39543WordPress Royal Elementor Addons plugin <= 1.3.977 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2025-26990WordPress Royal Elementor Addons plugin <= 1.7.1006 - Server Side Request Forgery (SSRF) vulnerability4.4
- CVE-2025-1456Royal Elementor Addons and Templates <= 1.7.1012 - Authenticated DOM-Based (Contributor+) Stored Cross-Site Scripting6.4
- CVE-2025-1455Royal Elementor Addons and Templates <= 1.7.1012 - Authenticated (Contributor+) Stored Cross-Site Scripting6.4
- CVE-2025-1441Royal Elementor Addons and Templates <= 1.7.1007 - Cross-Site Request Forgery to Reflected Cross-Site Scripting6.1
- CVE-2025-0393Royal Elementor Addons and Templates <= 1.7.1006 - Cross-Site Request Forgery to Reflected Cross-Site Scripting6.1
- CVE-2024-56062WordPress Royal Elementor Addons and Templates plugin <= 1.3.987 - Cross Site Scripting (XSS) vulnerability6.5
Product normalization is registry-driven with AI assist and human review. How it works