Ultimateaddons provides add-on components for the Beaver Builder page-building platform, with its disclosed vulnerabilities concentrating around the Cards for Beaver Builder product and reflecting input-handling issues characteristic of web-facing template and content-generation tools. The observed weakness centers on cross-site scripting, a durable signal for this class of builder extensions where user-supplied content and dynamic page generation intersect. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ultimateaddons over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-5663MEDIUM The Cards for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Cards widget in all versions up to, and including, 1.1.3 due to insu | Jun 8, 2024 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ultimateaddons.
Media articles that mention a CVE ID that affects a product developed by Ultimateaddons — matched by CVE ID, not by vendor name.