Browse all 4 CVE security advisories affecting kingaddons. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Kingaddons is a browser extension provider offering tools for enhancing web browsing experiences. Historically, the project has been associated with multiple critical vulnerabilities, including cross-site scripting (XSS) and remote code execution (RCE) flaws, often stemming from improper input validation and insecure design patterns. These vulnerabilities have potentially allowed attackers to execute arbitrary code, steal sensitive data, or escalate privileges within affected browsers. While no major public security incidents have been widely documented, the consistent presence of multiple CVEs indicates ongoing security challenges that users should consider when evaluating the extension's risk profile.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-13535 | King Addons for Elementor <= 51.1.38 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Multiple Widgets — King Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup BuilderCWE-79 | 6.4 | Medium | 2026-04-01 |
| CVE-2025-13997 | King Addons for Elementor <= 51.1.49 - Unauthenticated API Keys Disclosure — King Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup BuilderCWE-200 | 5.3 | Medium | 2026-03-23 |
| CVE-2025-7960 | King Addons for Elementor <= 51.1.39 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets — King Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup BuilderCWE-79 | 6.4 | Medium | 2025-12-13 |
| CVE-2025-8489 | King Addons for Elementor – Free Elements, Widgets, Templates, and Features for Elementor 24.12.92 - 51.1.14 - Unauthenticated Privilege Escalation — King Addons for Elementor – 4,000+ ready Elementor sections, 650+ templates, 70+ FREE widgets for ElementorCWE-269 | 9.8 | Critical | 2025-10-31 |
This page lists every published CVE security advisory associated with kingaddons. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.