
Sales Page Addon – Elementor & Beaver Builder Security & Risk Analysis
wordpress.org/plugins/sales-page-addonCreate beautiful Sales and Landing pages from easy to use templates.
Is Sales Page Addon – Elementor & Beaver Builder Safe to Use in 2026?
Mostly Safe
Score 71/100Sales Page Addon – Elementor & Beaver Builder is generally safe to use though it hasn't been updated recently. 1 past CVE were resolved. Keep it updated.
The sales-page-addon plugin exhibits a concerning security posture, primarily due to a significant number of unprotected AJAX handlers. While the plugin demonstrates good practices in its handling of SQL queries, utilizing prepared statements exclusively, and a relatively high percentage of properly escaped output, these strengths are overshadowed by critical weaknesses in access control. The presence of 8 AJAX handlers that lack authentication checks exposes a large attack surface to unauthorized users, potentially allowing them to trigger plugin functionalities without proper validation. Furthermore, the taint analysis reveals 3 flows with unsanitized paths, indicating potential vulnerabilities, although they are not currently classified as critical or high severity. The plugin's vulnerability history, including a medium severity Cross-Site Scripting (XSS) vulnerability discovered recently and remaining unpatched, further amplifies the risk. This suggests a pattern of introducing vulnerabilities and a lack of timely patching, which is a significant red flag for ongoing security. The combination of a broad, unprotected entry point and a history of unpatched vulnerabilities indicates a need for immediate attention to address these security gaps.
Key Concerns
- Unprotected AJAX handlers
- Unpatched CVE
- Taint flows with unsanitized paths
- Missing nonce checks on AJAX
- Missing capability checks
Sales Page Addon – Elementor & Beaver Builder Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Sales Page Addon – Elementor & Beaver Builder <= 1.4.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Sales Page Addon – Elementor & Beaver Builder Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Sales Page Addon – Elementor & Beaver Builder Attack Surface
AJAX Handlers 8
WordPress Hooks 37
Maintenance & Trust
Sales Page Addon – Elementor & Beaver Builder Maintenance & Trust
Maintenance Signals
Community Trust
Sales Page Addon – Elementor & Beaver Builder Alternatives
fluXtore Funnel Builder
fluxtore
Easily create highly converting sales funnels!
EZFunnels
ezfunnels
Connect your EZFunnels pages to your WordPress blog. Create custom URLs for your pages or set a funnelstep as homepage on your blog.
WP Funnel Manager
wp-funnel-manager
Organises content into multi-step funnels.
Elementor Website Builder – More Than Just a Page Builder
elementor
The Elementor Website Builder has it all: drag and drop page builder, pixel perfect design, mobile responsive editing, and more. Get started now!
FunnelKit – Funnel Builder for WooCommerce Checkout
funnel-builder
Create high-converting WooCommerce checkout pages, WooCommerce thank you pages & sales funnels with the highest-rated WordPress funnel builder.
Sales Page Addon – Elementor & Beaver Builder Developer Profile
7 plugins · 19K total installs
How We Detect Sales Page Addon – Elementor & Beaver Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sales-page-addon/assets/css/admin-styles.csssales-page-addon/assets/css/admin-styles.css?ver=