
Primary Addon for Elementor Security & Risk Analysis
wordpress.org/plugins/primary-addon-for-elementorPrimary Addon for Elementor is a collection of widgets needed for all common websites.
Is Primary Addon for Elementor Safe to Use in 2026?
Generally Safe
Score 89/100Primary Addon for Elementor has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin "primary-addon-for-elementor" v1.6.8 presents a mixed security posture. While static analysis indicates a seemingly clean code base with no identified dangerous functions, raw SQL queries, file operations, external HTTP requests, or obvious taint flows, this masks underlying historical concerns. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events, as well as a lack of explicit nonce and capability checks, suggests a potentially limited attack surface but also a lack of robust input validation and authorization mechanisms in place for any potential future endpoints. The presence of 5 known medium-severity vulnerabilities in its history, including Cross-site Scripting and Authorization Bypass, is a significant concern. Although none are currently unpatched, the recurring nature of these vulnerability types indicates potential weaknesses in secure coding practices that could resurface. Furthermore, the bundled Freemius library at v1.0 is an older version, which might carry its own unaddressed security issues.
Overall, the plugin's security is hampered by its historical vulnerability record and the potential for insecure practices, despite the current static analysis showing no immediate critical flaws. The lack of explicit security checks like nonces and capability checks, coupled with the past occurrences of XSS and authorization bypass, warrants caution. While the current version appears to have addressed past CVEs and has good output escaping, the history suggests a pattern of vulnerabilities that require ongoing vigilance and potentially deeper code review to ensure long-term security.
Key Concerns
- Bundled outdated library: Freemius v1.0
- 5 known medium-severity CVEs in history
- Lack of explicit capability checks
- Lack of nonce checks
Primary Addon for Elementor Security Vulnerabilities
CVEs by Year
Severity Breakdown
5 total CVEs
Primary Addon for Elementor <= 1.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting
Primary Addon for Elementor <= 1.6.2 - Authenticated (Contributor+) Post Disclosure
Primary Addon for Elementor <= 1.5.8 - Authenticated (Contributor+) Stored Cross-Site Scripting
Primary Addon for Elementor <= 1.5.7 - Authenticated (Contributor+) Stored Cross-Site Scripting
Primary Addon for Elementor <= 1.5.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Pricing Table Widget
Primary Addon for Elementor Code Analysis
Bundled Libraries
Output Escaping
Primary Addon for Elementor Attack Surface
WordPress Hooks 23
Maintenance & Trust
Primary Addon for Elementor Maintenance & Trust
Maintenance Signals
Community Trust
Primary Addon for Elementor Alternatives
Sky Addons – Elementor Addons with Widgets & Templates
sky-elementor-addons
Sky Addons is a powerful and essential Elementor addon plugin with 105 widgets and 2,000+ ready Elementor templates and a complete Theme Builder.
RS Elements Elementor Addon
rselements-lite
RSElements Addon is a collection of powerful widgets that works perfectly with Elementor page builder. It has 30+ widgets so you can eaily make awesom …
Absolute Addons For Elementor
absolute-addons
Absolute Addons For Elementor page builder is the best free Elementor addons comes with 17+ free Elementor Widgets including Advance Tab, Call to Acti …
Flux Elementor Addons
flux-addons
Flux addons is the new free widget library for Elementor page builder users to design the business website more user-friendly.
ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor
elementskit-lite
Join millions who empower their websites with ElementsKit Elementor Addons. Get templates, & 100+ widgets like header-footer, mega menu, custom widget
Primary Addon for Elementor Developer Profile
7 plugins · 19K total installs
How We Detect Primary Addon for Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/primary-addon-for-elementor/assets/css/admin-styles.css/wp-content/plugins/primary-addon-for-elementor/assets/css/linea.min.css/wp-content/plugins/primary-addon-for-elementor/assets/css/themify-icons.min.css/wp-content/plugins/primary-addon-for-elementor/assets/css/icofont.min.css/wp-content/plugins/primary-addon-for-elementor/assets/js/Chart.min.js/wp-content/plugins/primary-addon-for-elementor/assets/css/niche-frame.css/wp-content/plugins/primary-addon-for-elementor/assets/css/font-awesome.min.css/wp-content/plugins/primary-addon-for-elementor/assets/js/Chart.min.jsprimary-addon-for-elementor/assets/css/admin-styles.css?ver=primary-addon-for-elementor/assets/css/linea.min.css?ver=primary-addon-for-elementor/assets/css/themify-icons.min.css?ver=primary-addon-for-elementor/assets/css/icofont.min.css?ver=primary-addon-for-elementor/assets/js/Chart.min.js?ver=primary-addon-for-elementor/assets/css/niche-frame.css?ver=primary-addon-for-elementor/assets/css/font-awesome.min.css?ver=HTML / DOM Fingerprints
napae_admin_pagenapae_admin_sub_page<!-- Primary Addon for Elementor --><!-- Freemius Code --><!-- Enqueue Files for BackEnd --><!-- Admin Pages -->+12 moredata-elementor-iddata-elementor-post-typepafe_fs