
MT Addons for Elementor Security & Risk Analysis
wordpress.org/plugins/mt-addons-for-elementorMT Addons for Elementor with 50+ widgets, crafted by ModelTheme for dynamic, stylish website creation.
Is MT Addons for Elementor Safe to Use in 2026?
Generally Safe
Score 99/100MT Addons for Elementor has a strong security track record. Known vulnerabilities have been patched promptly.
The "mt-addons-for-elementor" plugin version 1.1.3 exhibits a mixed security posture. While it demonstrates good practices in many areas, such as using prepared statements for all SQL queries and a very high percentage of properly escaped output, there are significant concerns regarding its attack surface. The plugin exposes one AJAX handler without any authentication checks, creating a direct entry point for potential attackers. Although the static analysis did not reveal any critical or high-severity taint flows, the presence of an unprotected AJAX handler means that any input processed by this handler could be susceptible to various attacks if not properly validated and sanitized within the handler itself.
The vulnerability history shows a single medium-severity Cross-Site Scripting (XSS) vulnerability in the past. While this vulnerability is noted as currently unpatched in the provided data, the fact that it's the only recorded vulnerability and is of medium severity suggests a generally decent security track record, but it also highlights the plugin's susceptibility to input validation flaws. The presence of a bundled library, Freemius v1.0, is also noted, and while its specific version isn't flagged as problematic in this data, outdated bundled libraries can sometimes be a vector for vulnerabilities.
In conclusion, the plugin has strengths in its secure handling of database queries and output escaping. However, the critical weakness lies in the unprotected AJAX endpoint, which represents a significant security risk that needs immediate attention. The historical XSS vulnerability, though medium, reinforces the need for robust input validation. Addressing the unprotected entry point is paramount to improving the plugin's overall security.
Key Concerns
- Unprotected AJAX handler found
- Bundled Freemius v1.0 library identified
- One medium severity CVE on record
MT Addons for Elementor Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
MT Addons for Elementor <= 1.0.6 - Authenticated (Contributor+) Stored Cross-Site Scripting
MT Addons for Elementor Code Analysis
Bundled Libraries
Output Escaping
MT Addons for Elementor Attack Surface
AJAX Handlers 1
WordPress Hooks 21
Maintenance & Trust
MT Addons for Elementor Maintenance & Trust
Maintenance Signals
Community Trust
MT Addons for Elementor Alternatives
Qi Addons For Elementor
qi-addons-for-elementor
Qi Addons for Elementor is a comprehensive library of 60+ custom, flexible & easily styled Elementor widgets developed by Qode Interactive.
ACF Post Object Elementor List Widget
acf-post-object-elementor-list-widget
A WordPress Plugin that adds the ability to display the contents of an ACF Post Object field as a list of post links.
Wadi Addons for Elementor
wadi-addons-for-elementor
Wadi Addons for Elementor Page Builder provides a collection of quality Elementor Widgets which powers your Elementor Page Builder and takes your page …
ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor
elementskit-lite
Join millions who empower their websites with ElementsKit Elementor Addons. Get templates, & 100+ widgets like header-footer, mega menu, custom widget
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
MT Addons for Elementor Developer Profile
2 plugins · 2K total installs
How We Detect MT Addons for Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mt-addons-for-elementor/assets/css/mt-addons-style.css/wp-content/plugins/mt-addons-for-elementor/assets/css/mt-addons-responsive.css/wp-content/plugins/mt-addons-for-elementor/assets/js/mt-addons.js/wp-content/plugins/mt-addons-for-elementor/public/js/mt-addons-public.js/wp-content/plugins/mt-addons-for-elementor/assets/js/mt-addons.js/wp-content/plugins/mt-addons-for-elementor/public/js/mt-addons-public.jsmt-addons-for-elementor/assets/css/mt-addons-style.css?ver=mt-addons-for-elementor/assets/css/mt-addons-responsive.css?ver=mt-addons-for-elementor/assets/js/mt-addons.js?ver=mt-addons-for-elementor/public/js/mt-addons-public.js?ver=HTML / DOM Fingerprints
mt-addons-wrapmt-addons-settings<!-- MT ADDONS --><!-- END MT ADDONS --><!-- MT ADDONS ENDING --><!-- MT ADDONS MODULES -->+1 moredata-mt-addons-idmtAddonsmt_addons_params/wp-json/mt-addons/v1/...