WPSHARE247 Elementor Addons Security & Risk Analysis

wordpress.org/plugins/wpshare247-elementor-addons

Widgets (Wpshare247 Addons) for Elementor. Wpshare247 Addons for Elementor plugin includes widgets and addons like Blog Post, Products, Post, Page and …

60 active installs v2.5 PHP 7.0+ WP 4.9+ Updated Jun 26, 2025
carouselcustom-post-typeelementorgridwidgets
79
B · Generally Safe
CVEs total1
Unpatched1
Last CVEApr 1, 2025
Safety Verdict

Is WPSHARE247 Elementor Addons Safe to Use in 2026?

Mostly Safe

Score 79/100

WPSHARE247 Elementor Addons is generally safe to use. 1 past CVE were resolved. Keep it updated.

1 known CVE 1 unpatched Last CVE: Apr 1, 2025Updated 9mo ago
Risk Assessment

The static analysis of wpshare247-elementor-addons v2.5 reveals a plugin with a seemingly small attack surface, reporting zero AJAX handlers, REST API routes, shortcodes, or cron events. This, combined with the absence of dangerous functions, file operations, and external HTTP requests, suggests an effort to minimize direct code execution vectors. However, the reported 75% output escaping rate indicates a potential weakness, as a quarter of outputs may be vulnerable to cross-site scripting (XSS) if not handled properly within the remaining 25% of code. The complete lack of taint analysis results is also a concern, suggesting that either the analysis was incomplete or the plugin has no exploitable data flow vulnerabilities that the tool could detect. It's important to note that the static analysis found no direct SQL injection vulnerabilities using prepared statements and no identified capability or nonce checks are concerning for entry points that might exist and were not detected.

Key Concerns

  • Unpatched Medium severity CVE found
  • Only 75% of output properly escaped
  • No capability checks found on entry points
  • No nonce checks found on entry points
Vulnerabilities
1

WPSHARE247 Elementor Addons Security Vulnerabilities

CVEs by Year

1 CVE in 2025 · unpatched
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-31813medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

WPSHARE247 Elementor Addons <= 2.4 - Authenticated (Contributor+) Stored Cross-Site Scripting

Apr 1, 2025Unpatched
Code Analysis
Analyzed Mar 16, 2026

WPSHARE247 Elementor Addons Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
30
92 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

75% escaped122 total outputs
Attack Surface

WPSHARE247 Elementor Addons Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 25
actioninitinc\woocommerce.php:13
actionwp_footerinc\woocommerce.php:14
actionwoocommerce_before_shop_loop_item_titleinc\woocommerce.php:16
actionwoocommerce_shop_loop_item_titleinc\woocommerce.php:17
actionwoocommerce_after_shop_loop_iteminc\woocommerce.php:18
actionwoocommerce_after_shop_loop_iteminc\woocommerce.php:19
actionwoocommerce_before_shop_loopinc\woocommerce.php:70
actionwoocommerce_before_shop_loopinc\woocommerce.php:78
actionwoocommerce_before_shop_loop_item_titleinc\woocommerce.php:86
actionwoocommerce_before_shop_loop_item_titleinc\woocommerce.php:94
actionwoocommerce_shop_loop_item_titleinc\woocommerce.php:102
actionwoocommerce_after_shop_loop_item_titleinc\woocommerce.php:110
actionwoocommerce_after_shop_loop_item_titleinc\woocommerce.php:118
actionwoocommerce_after_shop_loop_iteminc\woocommerce.php:126
actionwoocommerce_shop_loop_subcategory_titleinc\woocommerce.php:134
actionelementor/elements/categories_registeredincludes\plugin.php:81
actionelementor/initincludes\plugin.php:82
actionadmin_noticesincludes\plugin.php:99
actionadmin_noticesincludes\plugin.php:105
actionadmin_noticesincludes\plugin.php:111
actionelementor/widgets/registerincludes\plugin.php:200
actionelementor/frontend/after_enqueue_stylesincludes\plugin.php:201
actionelementor/frontend/after_register_scriptsincludes\plugin.php:202
actionelementor/frontend/after_enqueue_scriptsincludes\widgets\wpshare247_vertical_mega_menu.php:1357
actionplugins_loadedwpshare247-elementor-addon.php:37
Maintenance & Trust

WPSHARE247 Elementor Addons Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.8
Last updatedJun 26, 2025
PHP min version7.0
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs60
Developer Profile

WPSHARE247 Elementor Addons Developer Profile

Website366.com

7 plugins · 5K total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WPSHARE247 Elementor Addons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wpshare247-elementor-addons/assets/css/frontend.css/wp-content/plugins/wpshare247-elementor-addons/assets/js/frontend.js
Script Paths
/wp-content/plugins/wpshare247-elementor-addons/assets/js/frontend.js
Version Parameters
wpshare247-elementor-addons/assets/css/frontend.css?ver=wpshare247-elementor-addons/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
wpshare247-el-addons
Data Attributes
data-widget_typedata-element_type
JS Globals
wpshare247_el_addons
FAQ

Frequently Asked Questions about WPSHARE247 Elementor Addons