Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Webangon — Vulnerabilities & Security Advisories 15

Browse all 15 CVE security advisories affecting Webangon. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Webangon operates as a web application framework primarily used for developing enterprise solutions. Historically, it has been associated with multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for its 15 recorded CVEs. The framework's security posture has been compromised through insufficient input validation and improper access controls, leading to several high-severity incidents. Notable characteristics include its widespread adoption in financial services and government sectors, which have been disproportionately affected by its vulnerabilities. Security researchers have consistently identified similar patterns across multiple versions, suggesting systemic weaknesses in its design and implementation.

CVE IDTitleCVSSSeverityPublished
CVE-2026-2284 News Element Elementor Blog Magazine <= 1.0.8 - Missing Authorization to Authenticated (Subscriber+) Data Loss — News Element Elementor Blog MagazineCWE-862 5.4 Medium2026-02-19
CVE-2025-8214 The Pack Elementor addon <= 2.1.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Typing Letter Widget — The Pack Elementor addonCWE-79 6.4 Medium2025-09-30
CVE-2025-6550 The Pack Elementor addon <= 2.1.4 - Authenticated (Contributor+) Stored Cross-Site Scripting — The Pack Elementor addonCWE-79 6.4 Medium2025-06-27
CVE-2025-46472 WordPress The Pack Elementor addons plugin <= 2.1.6 - Cross Site Scripting (XSS) Vulnerability — The Pack Elementor addonsCWE-79 6.5 Medium2025-04-24
CVE-2025-32191 WordPress News Element Elementor Blog Magazine plugin <= 1.0.9 - Cross Site Scripting (XSS) vulnerability — News Element Elementor Blog MagazineCWE-79 6.5 Medium2025-04-04
CVE-2025-30925 WordPress The Pack Elementor addons plugin <= 2.1.1 - Cross Site Scripting (XSS) vulnerability — The Pack Elementor addonsCWE-79 6.5 Medium2025-03-27
CVE-2025-30845 WordPress The Pack Elementor addons plugin <= 2.1.1 - Local File Inclusion vulnerability — The Pack Elementor addonsCWE-98 7.5 High2025-03-27
CVE-2024-10689 XLTab – Accordions and Tabs for Elementor Page Builder <= 1.4 - Authenticated (Contributor+) Post Disclosure — XLTab – Accordions and Tabs for Elementor Page BuilderCWE-639 4.3 Medium2024-12-06
CVE-2024-52356 WordPress The Pack Elementor addons plugin <= 2.1.0 - Cross Site Scripting (XSS) vulnerability — The Pack Elementor addonsCWE-79 6.5 Medium2024-11-11
CVE-2024-50453 WordPress The Pack Elementor addons plugin <= 2.0.9 - Local File Inclusion vulnerability — The Pack Elementor addonsCWE-23 7.5 High2024-10-28
CVE-2024-47375 WordPress XLTab – Accordions and Tabs for Elementor Page Builder plugin <= 1.3 - Cross Site Scripting (XSS) vulnerability — XLTab – Accordions and Tabs for Elementor Page BuilderCWE-79 6.5 Medium2024-10-05
CVE-2024-47383 WordPress The Pack Elementor addons plugin 2.0.8.8 - Cross Site Scripting (XSS) vulnerability — The Pack Elementor addonsCWE-79 5.9 Medium2024-10-05
CVE-2024-38768 WordPress The Pack Elementor addons plugin <= 2.0.8.6 - Local File Inclusion vulnerability — The Pack Elementor addonsCWE-22 4.3 Medium2024-08-01
CVE-2024-32785 WordPress The Pack Elementor addons plugin <= 2.0.8.3 - Cross Site Request Forgery (CSRF) to XSS vulnerability — The Pack Elementor addonsCWE-352 7.1 High2024-04-24
CVE-2024-32718 WordPress The Pack Elementor addons plugin <= 2.0.8.2 - Server Side Request Forgery (SSRF) vulnerability — The Pack Elementor addonsCWE-918 4.9 Medium2024-04-24

This page lists every published CVE security advisory associated with Webangon. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.