cleantalk
Vulnerabilities and Security Researches

ElementInvader Addons for Elementor, CVE-2025-48288

CVE, Research URL

CVE-2025-48288

Published on
May 19, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor allows Stored XSS. This issue affects ElementInvader Addons for Elementor: from n/a through 1.3.5.
Affected versions
Min -, max 1.3.6.
Status
vulnerable