Elementor vendor intelligence
Elementor Known Exploited Vulnerabilities
Track evidence-backed exploitation affecting Elementor products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.
- Total KEVs
- 2
- Known exploited vulnerabilities affecting Elementor products
- In CISA KEV
- 0
- Records also listed in the official catalog
- Beyond CISA KEV
- 2
- Additional exploited vulnerabilities absent from CISA KEV
- Sensor Observed
- 0
- Elementor KEVs with sensor-observed exploitation activity
Review Elementor exploitation against the products you run
Review exploited Elementor vulnerabilities against the products you run. CISA KEV coverage is shown below.
- 0%
- Covered by CISA
- 100%
- Beyond CISA
- 2
- Product families
Attested Elementor vulnerabilities
2 known exploited vulnerabilities in this exploited-vulnerability portfolio. Search, then narrow it to official CISA coverage or the additional records Previdian tracks beyond the catalog.
How exploitation is verified| CVE / description | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2026-32475
WordPress Elementor Pro plugin <= 4.2.1 - Arbitrary File Upload vulnerability |
Elementor Pro | High | Beyond CISA | 02 Sep 2026 |
|
CVE-2023-5360
Royal Elementor Addons and Templates < 1.3.79 - Unauthenticated Arbitrary File Upload |
Royal Elementor Addons and Templates | High | Beyond CISA | 13 Oct 2023 |
No Elementor vulnerabilities match this search or filter.
Showing 2 of 2 on this page (2 Elementor known exploited vulnerabilities).
Recurring weakness patterns
Unrestricted upload account for two mapped occurrences across this Elementor KEV portfolio.