Charity Addon for Elementor Security & Risk Analysis

wordpress.org/plugins/charity-addon-for-elementor

Charity Addon for Elementor is an Elementor Addons for Charity Websites.

1K active installs v1.3.3 PHP 7.0+ WP 6.0+ Updated Dec 11, 2024
addonscampaigncharitydonationelementor
69
C · Use Caution
CVEs total3
Unpatched1
Last CVEDec 2, 2024
Safety Verdict

Is Charity Addon for Elementor Safe to Use in 2026?

Use With Caution

Score 69/100

Charity Addon for Elementor has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.

3 known CVEs 1 unpatched Last CVE: Dec 2, 2024Updated 1yr ago
Risk Assessment

The 'charity-addon-for-elementor' v1.3.3 plugin exhibits a mixed security posture. On the positive side, the static analysis shows no immediate critical threats within the code itself. There are no identified dangerous functions, file operations, external HTTP requests, or obvious cross-site scripting vulnerabilities due to a high percentage of properly escaped output and the absence of taint flows. Furthermore, all SQL queries are prepared, and there are no identified cron events or shortcodes, minimizing the potential attack surface.

However, the plugin's vulnerability history is a significant concern. With a total of 3 known CVEs, including one that remains unpatched, and a history of medium severity vulnerabilities like Authorization Bypass and Cross-Site Scripting, this plugin presents a considerable risk. The fact that vulnerabilities have been present and that one is still unaddressed suggests a lack of consistent security patching and may indicate underlying architectural weaknesses that could lead to future issues. While the current version's static analysis appears clean, the historical context strongly advises caution.

Key Concerns

  • Unpatched CVE
  • 3 medium severity CVEs
  • 93% output escaping (potential for 7% unescaped)
  • 0 Nonce checks
  • 0 Capability checks
Vulnerabilities
3

Charity Addon for Elementor Security Vulnerabilities

CVEs by Year

3 CVEs in 2024 · unpatched
2024
Patched Has unpatched

Severity Breakdown

Medium
3

3 total CVEs

CVE-2024-12062medium · 4.3Authorization Bypass Through User-Controlled Key

Charity Addon for Elementor <= 1.3.3 - Authenticated (Contributor+) Post Disclosure

Dec 2, 2024Unpatched
CVE-2024-51938medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Charity Addon for Elementor <= 1.3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting

Nov 8, 2024 Patched in 1.3.3 (35d)
CVE-2024-44026medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Charity Addon for Elementor <= 1.3.0 - Authenticated (Contributor+) Stored Cross-Site Scripting

Sep 24, 2024 Patched in 1.3.2 (32d)
Code Analysis
Analyzed Mar 16, 2026

Charity Addon for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
101
1395 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

93% escaped1496 total outputs
Attack Surface

Charity Addon for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 21
actioninitcharity-addon-for-elementor.php:50
actionadmin_noticescharity-addon-for-elementor.php:57
actionplugins_loadedcharity-addon-for-elementor.php:61
actionwp_enqueue_scriptscharity-addon-for-elementor.php:107
actionplugins_loadedelementor\em-setup.php:33
actionelementor/editor/before_enqueue_scriptselementor\em-setup.php:35
actionelementor/frontend/after_enqueue_scriptselementor\em-setup.php:41
actionadmin_noticeselementor\em-setup.php:66
actionadmin_noticeselementor\em-setup.php:72
actionelementor/elements/categories_registeredelementor\em-setup.php:80
actionelementor/elements/categories_registeredelementor\em-setup.php:81
actionelementor/elements/categories_registeredelementor\em-setup.php:82
actionelementor/elements/categories_registeredelementor\em-setup.php:83
actionelementor/elements/categories_registeredelementor\em-setup.php:84
actionelementor/widgets/widgets_registeredelementor\em-setup.php:87
actionelementor/widgets/widgets_registeredelementor\em-setup.php:88
actionelementor/widgets/widgets_registeredelementor\em-setup.php:89
actionafter_switch_themeelementor\em-setup.php:251
actionpt-ocdi/after_content_import_executionelementor\em-setup.php:259
filterexcerpt_lengthelementor\em-setup.php:272
filterexcerpt_moreelementor\em-setup.php:297
Maintenance & Trust

Charity Addon for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 11, 2024
PHP min version7.0
Downloads27K

Community Trust

Rating40/100
Number of ratings1
Active installs1K
Developer Profile

Charity Addon for Elementor Developer Profile

nicheaddons

7 plugins · 19K total installs

75
trust score
Avg Security Score
82/100
Avg Patch Time
74 days
View full developer profile
Detection Fingerprints

How We Detect Charity Addon for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/charity-addon-for-elementor/assets/css/font-awesome.min.css/wp-content/plugins/charity-addon-for-elementor/assets/css/animate.min.css/wp-content/plugins/charity-addon-for-elementor/assets/css/themify-icons.min.css/wp-content/plugins/charity-addon-for-elementor/assets/css/linea.min.css/wp-content/plugins/charity-addon-for-elementor/assets/css/magnific-popup.min.css/wp-content/plugins/charity-addon-for-elementor/assets/css/owl.carousel.min.css/wp-content/plugins/charity-addon-for-elementor/assets/css/juxtapose.css/wp-content/plugins/charity-addon-for-elementor/assets/css/styles.css+18 more
Script Paths
/wp-content/plugins/charity-addon-for-elementor/assets/js/scripts.js/wp-content/plugins/charity-addon-for-elementor/elementor/js/nacharity-elementor.js
Version Parameters
/wp-content/plugins/charity-addon-for-elementor/assets/css/font-awesome.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/animate.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/themify-icons.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/linea.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/magnific-popup.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/owl.carousel.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/juxtapose.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/styles.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/responsive.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/jquery.waypoints.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/imagesloaded.pkgd.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/jquery.magnific-popup.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/circle-progress.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/juxtapose.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/typed.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/owl.carousel.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/jquery.plugin.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/jquery.countdown.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/jquery.matchHeight.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/isotope.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/packery-mode.pkgd.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/scripts.js?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/linea.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/css/themify-icons.min.css?ver=/wp-content/plugins/charity-addon-for-elementor/assets/js/Chart.min.js?ver=/wp-content/plugins/charity-addon-for-elementor/elementor/js/nacharity-elementor.js?ver=

HTML / DOM Fingerprints

CSS Classes
nacharity-chartjsnacharity-elementor
JS Globals
NACEP_PLUGIN_URLNACEP_PLUGIN_PATHNACEP_PLUGIN_ASTSNACEP_PLUGIN_IMGSNACEP_PLUGIN_CSSNACEP_PLUGIN_SCRIPTS+4 more
FAQ

Frequently Asked Questions about Charity Addon for Elementor