Known Vulnerabilities for La-studio Element Kit For Elementor by La-studioweb
Listed below are 1 of the newest known vulnerabilities associated with "La-studio Element Kit For Elementor" by "La-studioweb".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65489 json | Unauthenticated Broken Access Control in LA-Studio Element Kit for Elementor <= 1.6.2 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65488 json | Unauthenticated Cross Site Request Forgery (CSRF) in LA-Studio Element Kit for Elementor <= 1.6.2 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65482 json | Contributor Cross Site Scripting (XSS) in LA-Studio Element Kit for Elementor <= 1.6.2 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-15338 json | The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and... | Not Provided | 2026-07-11 | 2026-07-14 |
| CVE-2026-12276 json | The LA-Studio Element Kit for Elementor WordPress plugin before 1.6.1 does not check whether user registration is enabled on ... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2024-2249 json | Not Provided | 2024-03-14 | 2026-04-08 | |
| CVE-2023-50884 json | Missing Authorization vulnerability in LA-Studio LA-Studio Element Kit for Elementor lastudio-element-kit allows Exploiting I... | Not Provided | 2024-12-09 | 2026-04-29 |