Cyberchimps develops a suite of WordPress page-builder plugins and template libraries, including responsive design add-ons for Elementor and Gutenberg, that serve content creators and site developers. Its vulnerability profile concentrates on application-layer input-handling and information-disclosure weaknesses, particularly cross-site scripting, PHP remote file inclusion, and sensitive data exposure, which recur across its plugin ecosystem. Severity and current exploitation activity are shown in the live panel alongside this summary.
The number and severity of CVEs published that impact products developed by Cyberchimps over time
Signals from CVEs in this vendor scope (21 CVEs).
21 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-12073HIGH The responsive-add-ons plugin before 2.2.7 for WordPress has incorrect access control for wp-admin/admin-ajax.php?action= requests. | Apr 23, 2020 | 8.8 | 28 | NO | NO |
CVE-2024-13353HIGH The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and inc | Feb 21, 2025 | 8.8 | 26 | NO | NO |
CVE-2024-2848HIGH The Responsive theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_footer_text_callback function in all versions up | Mar 29, 2024 | 7.5 | 24 | NO | NO |
CVE-2026-32543MEDIUM Missing Authorization vulnerability in CyberChimps Responsive Blocks responsive-block-editor-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This iss | Mar 13, 2026 | 5.3 | 20 | NO | NO |
CVE-2025-69363MEDIUM Missing Authorization vulnerability in CyberChimps Responsive Addons for Elementor responsive-addons-for-elementor allows Exploiting Incorrectly Configured Access Control Security | Jan 6, 2026 | 6.5 | 20 | NO | NO |
CVE-2025-2225MEDIUM The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘rael_title_tag | Apr 15, 2025 | 5.4 | 19 | NO | NO |
CVE-2025-53202MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CyberChimps Responsive Blocks responsive-block-editor-addons allows DOM-Based | Jun 27, 2025 | 6.5 | 18 | NO | NO |
CVE-2025-49881MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CyberChimps Responsive Blocks responsive-block-editor-addons allows Stored XSS | Jun 17, 2025 | 6.5 | 18 | NO | NO |
CVE-2025-39578MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CyberChimps Responsive Blocks responsive-block-editor-addons allows Stored XSS | Apr 16, 2025 | 6.5 | 18 | NO | NO |
CVE-2025-2228MEDIUM The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t | Mar 26, 2025 | 5.7 | 18 | NO | NO |
Signals from CVEs in this vendor scope (21 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cyberchimps.
Media articles that mention a CVE ID that affects a product developed by Cyberchimps — matched by CVE ID, not by vendor name.