Known Vulnerabilities for Elements Plus! by Cssigniterteam
Listed below are 10 of the newest known vulnerabilities associated with "Elements Plus!" by "Cssigniterteam".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65904 json | DOMPurify through 3.3.3 fails to sanitize DOM elements passed via IN_PLACE mode when the element originates from a different ... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65901 json | DOMPurify through 3.4.6 contains a cross-site scripting vulnerability in IN_PLACE mode that trusts attacker-controlled nodeNa... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65898 json | DOMPurify before 3.4.11 fails to clone the ALLOWED_ATTR allowlist when setConfig() is used with an uponSanitizeAttribute hook... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-64174 json | In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: advance loop vars in cfg80211_merge_prof... | Not Provided | 2026-07-19 | 2026-07-19 |
| CVE-2026-64047 json | In the Linux kernel, the following vulnerability has been resolved: net: tls: fix off-by-one in sg_chain entry count for wra... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-63740 json | SurrealDB versions before 3.1.4 fail to properly enforce SELECT permissions on array elements (field.*) for record users, lea... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-62392 json | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache Kylin. A b... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-62390 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Kylin. A backend... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-61955 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hannan گرویتی ف�... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-60027 json | The Joomla extension Quix Page Builder Pro is vulnerable to a unauthenticated path traversal via form elements. Unauthenticat... | Not Provided | 2026-07-20 | 2026-07-21 |