Vulnerabilities (CVE)

Filtered by vendor Sinaextra Subscribe
Filtered by product Sina Extension For Elementor
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-34384 1 Sinaextra 1 Sina Extension For Elementor 2024-06-10 N/A 8.8 HIGH
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in SinaExtra Sina Extension for Elementor allows PHP Local File Inclusion.This issue affects Sina Extension for Elementor: from n/a through 3.5.1.
CVE-2021-24269 1 Sinaextra 1 Sina Extension For Elementor 2021-05-11 3.5 LOW 5.4 MEDIUM
The “Sina Extension for Elementor” WordPress Plugin before 3.3.12 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.