
Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Security & Risk Analysis
wordpress.org/plugins/thim-elementor-kitThim Elementor Kit is a plugin which supports users to build theme, layout, page, post, product, Woocommerce, LearnPress, courses with Elementor.
Is Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Safe to Use in 2026?
Generally Safe
Score 95/100Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor has a strong security track record. Known vulnerabilities have been patched promptly.
The "thim-elementor-kit" v1.3.8 plugin presents a mixed security posture. While it demonstrates good practices in some areas, such as using prepared statements for all SQL queries and a high percentage of output escaping, significant concerns remain. The most pressing issue is the presence of two AJAX handlers without authentication checks, creating a direct attack surface for unauthenticated users. This, combined with five flows with unsanitized paths identified in the taint analysis, suggests potential avenues for injection or manipulation vulnerabilities. The plugin's history of six known CVEs, primarily involving missing authorization and cross-site scripting, reinforces these concerns and indicates a recurring pattern of authorization and input sanitization weaknesses. Although there are currently no unpatched vulnerabilities, the past issues and identified code signals warrant caution. The plugin's strength lies in its adherence to secure SQL practices and good output escaping, but the unprotected entry points and taint analysis findings are critical weaknesses that require immediate attention.
Key Concerns
- Unprotected AJAX handlers
- Flows with unsanitized paths
- History of medium severity CVEs (6 total)
- Missing nonce check on 2 AJAX handlers
Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Security Vulnerabilities
CVEs by Year
Severity Breakdown
6 total CVEs
Thim Kit for Elementor <= 1.3.7 - Missing Authorization to Unauthenticated Private Course Disclosure
Thim Elementor Kit <= 1.3.3 - Authenticated (Contributor+) Insecure Direct Object Reference
Thim Elementor Kit <= 1.2.8 - Missing Authorization
Thim Elementor Kit <= 1.2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting
Thim Elementor Kit <= 1.1.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via id Parameter
Thim Elementor Kit <= 1.1.8 - Authenticated (Contributor+) Stored Cross-Site Scripting
Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Attack Surface
AJAX Handlers 2
WordPress Hooks 124
Maintenance & Trust
Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Maintenance & Trust
Maintenance Signals
Community Trust
Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Alternatives
ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor
elementskit-lite
Join millions who empower their websites with ElementsKit Elementor Addons. Get templates, & 100+ widgets like header-footer, mega menu, custom widget
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
Ultimate Addons for Elementor
header-footer-elementor
Powerful Elementor addon with advanced Elementor widgets, templates, WooCommerce widgets & Header-Footer builder to build professional websites fa …
Premium Addons for Elementor – Powerful Elementor Templates & Widgets
premium-addons-for-elementor
Elementor Carousel, Mega Menu, Posts List/Slider, Media Gallery, WooCommerce Widgets, Display Conditions, Premade Templates & more.
Royal Addons for Elementor – Addons and Templates Kit for Elementor
royal-elementor-addons
Elementor templates, Header footer builder, Elementor Post Grid, Woocommerce Grid builder, Slider, Forms, Gallery, Nav menu addons, Elementor widgets.
Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor Developer Profile
21 plugins · 209K total installs
How We Detect Thim Kit for Elementor – Pre-built Templates & Widgets for Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/thim-elementor-kit/assets/css/thim-elementor-kit.css/wp-content/plugins/thim-elementor-kit/assets/js/thim-elementor-kit.js/wp-content/plugins/thim-elementor-kit/assets/css/frontend.css/wp-content/plugins/thim-elementor-kit/assets/js/frontend.js/wp-content/plugins/thim-elementor-kit/assets/js/thim-elementor-kit.js/wp-content/plugins/thim-elementor-kit/assets/js/frontend.jsthim-elementor-kit/assets/css/thim-elementor-kit.css?ver=thim-elementor-kit/assets/js/thim-elementor-kit.js?ver=thim-elementor-kit/assets/css/frontend.css?ver=thim-elementor-kit/assets/js/frontend.js?ver=HTML / DOM Fingerprints
thim-ekit-widgetthim-ekit-contentdata-thim-ekit-widget-idThim_EKitthim_elementor_kit_params/wp-json/thim-ekit/v1/get_settings/wp-json/thim-ekit/v1/save_settings/wp-json/thim-ekit/v1/get_post_types/wp-json/thim-ekit/v1/get_taxonomies