Home/Product/hasthemes ht mega
Product

hasthemes ht mega

30 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-8401
< 2.9.2
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions u
4.3MEDIUM
CVE-2025-8151
< 2.9.2
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Path Traversal in all versions up to, and includ
4.3MEDIUM
CVE-2025-8068
< 2.9.2
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to unauthorized modification and loss of data due t
4.3MEDIUM
CVE-2025-1802
< 2.8.4
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘marker_ti
6.4MEDIUM
CVE-2025-1261
<= 2.8.2
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to DOM-Based Stored Cross-Site Scripting via the pl
6.4MEDIUM
CVE-2024-12599
<= 2.8.1
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Cou
6.4MEDIUM
CVE-2024-12597
< 2.7.7
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'block_css'
6.4MEDIUM
CVE-2024-8910
< 2.6.6
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions u
4.3MEDIUM
CVE-2024-38706
< 2.5.8
Path Traversal: '.../...//' vulnerability in DevItems HT Mega ht-mega-for-elementor.This issue affects HT Mega: from n/a through <
6.5MEDIUM
CVE-2024-5215
< 2.5.6
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets
6.4MEDIUM
CVE-2024-5173
< 2.5.6
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Video player
6.4MEDIUM
CVE-2024-4876
< 2.5.3
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘popover_h
6.4MEDIUM
CVE-2024-4875
< 2.5.3
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to unauthorized modification of data|loss of data d
4.3MEDIUM
CVE-2023-37999
< 2.2.1
Improper Privilege Management vulnerability in HasThemes HT Mega allows Privilege Escalation.This issue affects HT Mega: from n/a
9.8CRITICAL
CVE-2024-3990
< 2.5.1
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Tooltip & Po
6.4MEDIUM
CVE-2024-3989
< 2.5.1
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Gal
6.4MEDIUM
CVE-2024-3308
< 2.5.0
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Grid w
6.4MEDIUM
CVE-2024-3307
< 2.5.0
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown wi
6.4MEDIUM
CVE-2024-2790
< 2.4.9
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Accordion widget
6.4MEDIUM
CVE-2024-2085
< 2.4.7
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'size' value
6.4MEDIUM
CVE-2024-2084
< 2.4.7
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's lig
6.4MEDIUM
CVE-2023-6214
< 2.4.7
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions u
7.5HIGH
CVE-2024-32782
< 2.4.8
Insertion of Sensitive Information Into Sent Data vulnerability in DevItems HT Mega ht-mega-for-elementor.This issue affects HT Me
4.3MEDIUM
CVE-2024-1974
< 2.4.7
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and i
8.8HIGH
CVE-2024-30182
< 2.4.4
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DevItems HT Mega ht-mega-for
6.5MEDIUM
CVE-2024-1421
<= 2.4.4
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘border_ty
6.4MEDIUM
CVE-2024-1397
< 2.4.7
The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's blo
6.4MEDIUM
CVE-2023-51529
< 2.3.4
Cross-Site Request Forgery (CSRF) vulnerability in HasThemes HT Mega - Absolute Addons For Elementor.This issue affects HT Mega -
4.3MEDIUM
CVE-2023-50901
<= 2.3.8
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HasThemes HT Mega - Absolute
7.1HIGH
CVE-2021-24261
< 1.5.7
The “HT Mega - Absolute Addons for Elementor Page Builder” WordPress Plugin before 1.5.7 has several widgets that are vulnerab
5.4MEDIUM
threatengine.sh