CVE-2024-4482
Published
CVSS v3
6.4
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT
Description
The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Countdown' widget in all versions up to, and including, 5.6.1 due to insufficient input sanitization and output escaping on user supplied 'text_days' attribute. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
<p>The Plus Addons for Elementor is the powerful extension for <a href="https://wordpress.org/plugins/elementor/" rel="ugc">Elementor Website Builder</a> with <strong>120+ Powerful Widgets & Extension, 1000+ Elementor Templates</strong>.</p>
<p>One Elementor Addon to replace multiple WordPress Plugins. Packed with <strong><a href="https://theplusaddons.com/blog-builder/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Blog Website Builder</a>, <a href="https://theplusaddons.com/woo-builder/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">WooCommerce Store Builder</a>, <a href="https://theplusaddons.com/widgets/mega-menu/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Mega Menu for Elementor</a>, <a href="https://theplusaddons.com/grid-builder/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Grid Builder for Elementor</a>, <a href="https://theplusaddons.com/elementor-builder/popup-builder/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Popup Builder for Elementor</a>, <a href="https://theplusaddons.com/elementor-builder/header-builder/#header-builder-wgts?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Header Builder for Elementor</a> and more.</strong></p>
<p><strong> <a href="https://theplusaddons.com/elementor-widgets?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc"> VIEW ALL ELEMENTOR WIDGETS DEMO</a></strong></p>
<p>—</p>
<p><a href="https://theplusaddons.com/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc"> Visit Website</a> | <a href="https://www.youtube.com/c/POSIMYTHInnovations/?sub_confirmation=1" rel="nofollow ugc">Video Tutorials</a>| <a href="https://theplusaddons.com/docs" rel="nofollow ugc">Documentations</a> | <a href="http://roadmap.theplusaddons.com/" rel="nofollow ugc">Roadmap</a> | <a href="https://www.facebook.com/groups/theplus4elementor" rel="nofollow ugc">Join Facebook Community</a> | <a href="https://wordpress.org/support/plugin/the-plus-addons-for-elementor-page-builder/" rel="ugc">Free Support</a> | <a href="https://store.posimyth.com/helpdesk/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Premium Support</a> | <a href="https://theplusaddons.com/free-vs-pro?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc"> Compare FREE vs PRO</a> | <a href="https://theplusaddons.com/chat/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">AI Chat (Instant Answers)</a></p>
<h3>Complete Elementor Addon Features Explained Under 4 Mins <a href="https://www.youtube.com/watch?v=yG_oyhz-oAY" rel="nofollow ugc"> Watch Now</a></h3>
<p><span class="embed-youtube" style="text-align:center; display: block;"><iframe loading="lazy" class="youtube-player" width="750" height="422" src="https://www.youtube.com/embed/yG_oyhz-oAY?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent" allowfullscreen="true" style="border:0;" sandbox="allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox"></iframe></span></p>
<h3>👑 What Makes This Elementor Addon Unique?</h3>
<ul>
<li><strong>Free Elementor Blog Website</strong> Builder</li>
<li><strong>WooCommerce Store Builder</strong> for Elementor to build custom Checkout, Cart pages, Thank you page etc. 🔥</li>
<li><strong>One-Click Auto Widget Scanner</strong> to Turn off Unused Widgets automatically 🚀</li>
<li>Plugin Regularly Audited by <strong>Top Security Experts </strong> 🔐</li>
<li><strong>Free Cross-Domain Copying and pasting</strong> to easily copy a templates & sections from one domain to other</li>
<li><strong>Facebook Pixel & Google Events 4 Event Tracker for Elementor</strong> to help you track events, button clicks for conversions</li>
<li>Vertical and Horizontal <strong>Mega Menu Builder</strong> for Elementor 🔥</li>
<li><strong> Facebook and Google Reviews</strong> for Elementor</li>
<li><strong>Social Feeds</strong> show live dynamic feed content from your Facebook, Instagram, YouTube, X (formerly Twitter), Vimeo 🔥</li>
<li><strong>Login and Registration & Password Reset Form</strong> for Elementor</li>
<li><strong>Carousel Anything</strong> converts any sections in carousel 🔥</li>
<li><strong>Popup Builder</strong> for Elementor</li>
<li><strong>Display Conditions or Visibility Logic</strong> for Elementor 🔥</li>
<li><strong>Elementor Custom Post Loops Skin Builder</strong> for Posts, CPT & WooCommerce Products (Ele Custom Skin Alternative) 🔥</li>
<li><strong>Preloader Animation and Page Transition</strong> for Elementor</li>
<li><strong>Custom Cursor Icons </strong> for Elementor</li>
<li>Integrated with <strong>ACF, Toolset, Pods, WooCommerce, Mailchimp </strong> and more</li>
<li><strong>Supports RTL | WPML</strong> or any Translation | <strong>Multisite Networks</strong></li>
<li><strong>Optimized Code Delivery</strong> with <strong>Ultra Light Modular</strong> backend architecture</li>
<li><strong>SEO Friendly, A/B Tested Designs</strong> and <strong>Mobile Friendly</strong></li>
<li>Compatible with most <strong>WordPress themes like </strong><strong><a href="https://nexterwp.com/nexter-theme/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Nexter</a>, Blocksy , Kadence, Astra, OceanWP, GeneratePress, Neve etc.</strong></li>
</ul>
<h3>🏆 Reviewed by Top YouTubers & Bloggers 🏆</h3>
<p><em>“This might be the only Elementor Addon you ever need”<strong><a href="https://www.youtube.com/watch?v=kXmAQqdkVtg" rel="nofollow ugc"> – WP Learning Lab</a></strong></em></p>
<p><em>“An amazing plugin,i think it is a kind of full pack addon for elementor”<strong><a href="https://www.youtube.com/watch?v=2bdeeu6sZPw" rel="nofollow ugc"> – GO TECH UG</a></strong></em></p>
<p><em>“The Plus Addons for Elementor is definitely one of the best addons that are available as of today for Elementor Page Builder. “<strong><a href="https://droidcrunch.com/the-plus-addons-for-elementor-review/" rel="nofollow ugc"> – DriodCrunch</a></strong></em></p>
<h3>Complete List of Our Elementor Widgets & Extensions ⤵️</h3>
<h3>🏆 35+ Free Elementor Widgets</h3>
<ul>
<li>
<p><strong><a href="https://theplusaddons.com/blog-builder/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc"> FREE Blog Website Builder for Elementor 🔥</a> </strong><br />
<a href="https://theplusaddons.com/blog-builder/#blog-single/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Title</a> | <a href="https://theplusaddons.com/blog-builder/#blog-single/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Content</a> | <a href="https://theplusaddons.com/blog-builder/#blog-single/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Featured Image</a> | <a href="https://theplusaddons.com/blog-builder/#blog-single/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Meta</a> | <a href="https://theplusaddons.com/blog-builder/#blog-single/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Author</a> | <a href="https://theplusaddons.com/blog-builder/#blog-single/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Comment</a> | <a href="https://theplusaddons.com/blog-builder/#blog-single/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Navigation (Next/Previous Button)</a> | <a href="https://theplusaddons.com/?s=perfect&utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Search Bar</a></p>
</li>
<li>
<p><strong> <a href="https://theplusaddons.com/widgets/blockquote/?&utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Block Quote Box for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/buttons/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Buttons for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/countdown/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Countdown Timer for Elementor 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/heading-titles/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Heading Title for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/infobox/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Info Box for Elementor / Icon box 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/elementor-header-navigation-builder/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Navigation Menu Lite for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/piechart/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Pie Chart & Doughnut for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/pricing-table/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Pricing Tables for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/progress-bar/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Progress Bar for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/social-icon/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Social Icons for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/videos/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Video Player for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/heading-animation/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Heading Animation for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/flipbox/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Flip Box for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/smooth-scroll/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Smooth Scroll for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/accordion/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Accordions for Elementor / Content Toggle / Collapsible Content 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/tabs-tours/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Tabs for Elementor 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/best-page-scrolling-options-for-elementor/#full-piling?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Full Page for Elementor 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/elementor-builder/form-builder/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREEMIUM Form Builder for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/contact-form-7/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Contact form 7 Styler for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/everest-forms/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Everest Forms Styler for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/gravity-forms/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Gravity Forms Styler for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/ninja-forms/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Ninja Forms Styler Widget for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/wpforms/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE WP Forms Styler Widget for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/elementor-widget/custom-icons/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Custom Icon Widget for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/elementor-listing/blog-post/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Blog Posts Listing for Elementor</a></strong><br />
<a href="https://theplusaddons.com/plus-blogs/grid-blogs/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Grid Post Layout</a> | <a href="https://theplusaddons.com/plus-blogs/masonry-blogs/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Masonry Post Layout</a> | <a href="https://theplusaddons.com/plus-blogs/metro-blogs/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Metro Post Layout</a> | <a href="https://theplusaddons.com/plus-blogs/carousel-blogs/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Post Carousel Slider </a> |<a href="https://theplusaddons.com/plus-blogs/blog-stagger-load/" rel="nofollow ugc">Stagger Load Layout</a></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/elementor-listing/image-gallery/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc"> FREE Image Gallery for Elementor</a></strong><br />
<a href="https://theplusaddons.com/plus-image-gallery/image-grid/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Image Grid Gallery</a> | <a href="https://theplusaddons.com/plus-image-gallery/image-masonry/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Image Masonry Gallery</a> | <a href="https://theplusaddons.com/plus-image-gallery/image-metro/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Image Metro Gallery</a> | <a href="https://theplusaddons.com/plus-image-gallery/image-carousel/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Image Carousel Slider</a></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/elementor-listing/team-members/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Team Members Listing for Elementor</a></strong><br />
<a href="https://theplusaddons.com/pluslisting/elementor-team-members/grid/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Grid Team Member Listing</a> | <a href="https://theplusaddons.com/pluslisting/elementor-team-members/masonry/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Masonry Team Member Listing</a> | <a href="https://theplusaddons.com/pluslisting/elementor-team-members/carousel/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Carousel Slider for Team Member Listing</a></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/elementor-listing/testimonials/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Testimonials Listing for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/elementor-listing/client-logos/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Client Logos Listing for Elementor</a></strong><br />
<a href="https://theplusaddons.com/team-member/#grid-section?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Grid Logo Layout </a> | <a href="https://theplusaddons.com/elementor-listing/client-logos/masonry/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">Client Logo Masonry Layout</a></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/plus-extras/equal-height/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Equal Height for Elementor ( Same Column Height ) 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/plus-extras/wrapper-link/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Wrapper Link for Elementor – Custom Link Full Flexbox/Grid Container & Section 🔥 </a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/age-gate/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Age Verification Gate for Elementor 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/message-box/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Message Box for Elementor & Toast Notification </a></strong></p>
</li>
<li>
<p><strong> <a href="https://theplusaddons.com/widgets/advance-text-block/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Advanced Text Block for Elementor</a></strong></p>
</li>
<li>
<p><strong> <a href="https://theplusaddons.com/plus-extras/glass-morphism/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Glass Morphism Effect for Elementor / Forested Glass Effect</a></strong></p>
</li>
<li>
<p><strong> <a href="https://theplusaddons.com/elementor-extras/neumorphism/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Advanced Shadow for Elementor</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/plus-extras/cross-domain-copy-paste-and-live-copy-elementor/?utm_source=wordpress&utm_medium=readmepage&utm_campaign=widgetslinks" rel="nofollow ugc">FREE Cross Domain Copy and Paste for Elementor 🔥</a></strong></p>
</li>
<li>
<p><strong><a href="https://theplusaddons.com/widgets/elementor-dark-mode/?utm_sourc