CVE Tools

Nicheaddons

18 CVEs tracked since 2024. Since Oct 2024, none of them reached CISA KEV.

Nicheaddons CVEs per month

Oct 2024 to Dec 2024. Point at a month, or focus the strip and use the arrow keys.
Nicheaddons CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2024-1070
2024-1150
2024-1260

Products

The products that kept showing up in Nicheaddons's monthly top three, with their CVEs summed over those months.

  1. Restaurant & Cafe Addon For Elementor63 months
  2. Events Addon For Elementor42 months
  3. Restaurant \& Cafe Addon For Elementor42 months
  4. Primary Addon For Elementor31 month
  5. Sales Page Addon – Elementor & Beaver Builder11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Nicheaddons.

  1. CVE-2024-13362Freemius <= 2.10.1 - Reflected DOM-Based Cross-Site Scripting via url Parameter6.1
  2. CVE-2025-8150Events Addon for Elementor <= 2.2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Typewriter and Countdown Widgets6.4
  3. CVE-2025-8212Medical Addon for Elementor <= 1.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Typewriter Widget6.4
  4. CVE-2024-13854Education Addon for Elementor <= 1.3.1 - Authenticated (Contributor+) Insecure Direct Object Reference via naedu_elementor_template Shortcode4.3
  5. CVE-2024-12046Medical Addon for Elementor <= 1.6.2 - Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Information Exposure via Shortcode4.3
  6. CVE-2024-12061Events Addon for Elementor <= 2.2.3 - Authenticated (Contributor+) Post Disclosure4.3
  7. CVE-2024-54316WordPress Restaurant & Cafe Addon for Elementor plugin <= 1.5.8 - Cross Site Scripting (XSS) vulnerability6.5
  8. CVE-2024-54315WordPress Events Addon for Elementor plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerability6.5
  9. CVE-2024-54314WordPress Primary Addon for Elementor plugin <= 1.6.0 - Cross Site Scripting (XSS) vulnerability6.5
  10. CVE-2023-47826WordPress Restaurant & Cafe Addon for Elementor plugin <= 1.5.3 - Broken Access Control vulnerability6.5
  11. CVE-2024-12062Charity Addon for Elementor <= 1.3.3 - Authenticated (Contributor+) Post Disclosure4.3
  12. CVE-2024-10780Restaurant & Cafe Addon for Elementor <= 1.5.9 - Authenticated (Contributor+) Post Disclosure4.3
  13. CVE-2024-10670Primary Addon for Elementor <= 1.6.2 - Authenticated (Contributor+) Post Disclosure4.3
  14. CVE-2024-51938WordPress Charity Addon for Elementor plugin <= 1.3.2 - Cross Site Scripting (XSS) vulnerability6.5
  15. CVE-2024-51581WordPress Restaurant & Cafe Addon for Elementor plugin <= 1.5.6 - Cross Site Scripting (XSS) vulnerability6.5

The record

Peak rank
#102 in Oct 2024
Busiest month shown
Oct 2024, 7 CVEs
Months with a KEV entry
0 since Oct 2024
Monthly snapshots
3 since 2024
Nicheaddons's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store