Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.5

Elementor Addon Elements Leaks Sensitive Data From Embedded Content

CVE-2026-28131
Summary

A security issue in Elementor Addon Elements can cause sensitive information to be exposed when embedded content is sent. This affects users of the Elementor page builder plugin, specifically those using the Addon Elements feature. To stay secure, update to the latest version of Elementor Addon Elements, which addresses this issue.

Original title
Insertion of Sensitive Information Into Sent Data vulnerability in WPVibes Elementor Addon Elements addon-elements-for-elementor-page-builder allows Retrieve Embedded Sensitive Data.This issue affe...
Original description
Insertion of Sensitive Information Into Sent Data vulnerability in WPVibes Elementor Addon Elements addon-elements-for-elementor-page-builder allows Retrieve Embedded Sensitive Data.This issue affects Elementor Addon Elements: from n/a through <= 1.14.4.
nvd CVSS3.1 6.5
Vulnerability type
CWE-201
Published: 26 Feb 2026 · Updated: 12 Mar 2026 · First seen: 6 Mar 2026