CVE · Medium

CVE-2025-69300 — Premium Addons for Elementor – Elementor Templates, Widgets & MCP Tools [premium-addons-for-elementor] < 4.11.64

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-69300 Premium Addons for Elementor – Elementor Templates, Widgets & MCP Tools [premium-addons-for-elementor] < 4.11.64 Missing Authorization Medium 5.4 < 4.11.64 4.11.64 2026-01-17

CVE-2025-69300

The Premium Addons for Elementor plugin, up to version 4.11.63, is susceptible to unauthorized access because it lacks proper capability checks in certain functions. Authenticated users with at least Subscriber-level permissions can exploit this to modify plugin settings without authorization.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.