cleantalk
Vulnerabilities and Security Researches

PowerPack Addons for Elementor (Free Widgets, Extensions and Templates), CVE-2026-32430

CVE, Research URL

CVE-2026-32430

Published on
Mar 14, 2026
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in IdeaBox Creations PowerPack Addons for Elementor powerpack-lite-for-elementor allows Stored XSS.This issue affects PowerPack Addons for Elementor: from n/a through <= 2.9.9.
Affected versions
max 2.9.9.
Status
vulnerable