Known Vulnerabilities for Elementor Pro by Elementor
Listed below are 6 of the newest known vulnerabilities associated with "Elementor Pro" by "Elementor".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40763 json | Missing Authorization vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Exploiting Incorrectly C... | Not Provided | 2026-04-15 | 2026-04-16 |
| CVE-2026-40745 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in bdthemes Element Pack E... | Not Provided | 2026-04-15 | 2026-04-15 |
| CVE-2026-39703 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpbits WPBITS Addons Fo... | Not Provided | 2026-04-08 | 2026-04-13 |
| CVE-2026-39702 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wealcoder Animation Add... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-39636 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in livemesh Livemesh Addon... | Not Provided | 2026-04-08 | 2026-04-13 |
| CVE-2026-39500 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themesflat themesflat-a... | Not Provided | 2026-04-08 | 2026-04-13 |
| CVE-2026-32532 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeHunk Contact Form ... | Not Provided | 2026-03-25 | 2026-03-25 |
| CVE-2026-32527 json | Missing Authorization vulnerability in CRM Perks WP Insightly for Contact Form 7, WPForms, Elementor, Formidable and Ninja Fo... | Not Provided | 2026-03-25 | 2026-03-26 |
| CVE-2026-32462 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Liton Arefin Master Add... | Not Provided | 2026-03-13 | 2026-04-01 |
| CVE-2026-32445 json | Missing Authorization vulnerability in Elementor Elementor Website Builder elementor allows Exploiting Incorrectly Configured... | Not Provided | 2026-03-13 | 2026-04-01 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Elementor | Elementor Pro | 3.0.5 |