PLUGIN SECURITY
Is JetElements For Elementor safe?
Turns on site high speed to be attractive for people and search engines.
What this plugin does
- Slug:
jet-elements - Author: Seraphinite Solutions
- 50000+ active installs
- 96/100 rating (475 reviews on wordpress.org)
- 898575 all-time downloads
- On WordPress.org since 2021-05-29
cacheOptimizepagespeedperformancespeed up
Maintenance status
- Latest known version: 2.29.20
- Last updated: 2026-09-03 7:41am GMT
- Tested up to WordPress: 7.1
- Requires PHP: 7.1+
Known vulnerabilities
15 known CVEs on file for JetElements For Elementor.
| CVE | Vulnerability | Type | Severity | Affected | Fixed in | Published | Status |
|---|---|---|---|---|---|---|---|
| CVE-2026-24958 | JetElements For Elementor [jet-elements] < 2.7.12.3 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.5 | < 2.7.12.3 | 2.7.12.3 | 2025-12-30 | ✓ fixed in latest |
| CVE-2025-64355 | JetElements For Elementor [jet-elements] < 2.7.12.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Unknown | < 2.7.12.1 | 2.7.12.1 | 2025-11-06 | ✓ fixed in latest |
| CVE-2025-55714 | JetElements For Elementor [jet-elements] < 2.7.9.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.5 | < 2.7.9.1 | 2.7.9.1 | 2025-08-14 | ✓ fixed in latest |
| CVE-2025-49939 | JetElements For Elementor [jet-elements] < 2.7.8.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.5 | < 2.7.8.1 | 2.7.8.1 | 2025-08-03 | ✓ fixed in latest |
| CVE-2025-53982 | JetElements For Elementor [jet-elements] < 2.7.7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.5 | < 2.7.7.1 | 2.7.7.1 | 2025-07-16 | ✓ fixed in latest |
| CVE-2025-53983 | JetElements For Elementor [jet-elements] < 2.7.7.1 | Insertion of Sensitive Information Into Sent Data | Medium 6.5 | < 2.7.7.1 | 2.7.7.1 | 2025-07-16 | ✓ fixed in latest |
| CVE-2025-39448 | JetElements For Elementor [jet-elements] < 2.7.4.2 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.5 | < 2.7.4.2 | 2.7.4.2 | 2025-04-17 | ✓ fixed in latest |
| CVE-2025-39447 | JetElements For Elementor [jet-elements] < 2.7.4.2 | Missing Authorization | High 7.5 | < 2.7.4.2 | 2.7.4.2 | 2025-04-17 | ✓ fixed in latest |
+ 9 more known vulnerabilities
| CVE | Vulnerability | Type | Severity | Affected | Fixed in | Published | Status |
|---|---|---|---|---|---|---|---|
| CVE-2024-7144 | JetElements For Elementor [jet-elements] < 2.6.20.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 5.4 | < 2.6.20.1 | 2.6.20.1 | 2024-08-15 | ✓ fixed in latest |
| CVE-2024-7145 | JetElements For Elementor [jet-elements] < 2.6.20.1 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | High 8.8 | < 2.6.20.1 | 2.6.20.1 | 2024-08-15 | ✓ fixed in latest |
| CVE-2023-48760 | JetElements For Elementor [jet-elements] < 2.6.13.1 | Missing Authorization | High 8.2 | < 2.6.13.1 | 2.6.13.1 | 2023-11-28 | ✓ fixed in latest |
| CVE-2023-48761 | JetElements For Elementor [jet-elements] < 2.6.13.1 | Missing Authorization | Medium 6.3 | < 2.6.13.1 | 2.6.13.1 | 2023-11-28 | ✓ fixed in latest |
| CVE-2023-48762 | JetElements For Elementor [jet-elements] < 2.6.13.1 | Cross-Site Request Forgery (CSRF) | Medium 6.3 | < 2.6.13.1 | 2.6.13.1 | 2023-11-28 | ✓ fixed in latest |
| CVE-2023-48759 | JetElements For Elementor [jet-elements] < 2.6.13.1 | Missing Authorization | High 7.5 | < 2.6.13.1 | 2.6.13.1 | 2023-11-28 | ✓ fixed in latest |
| CVE-2023-39157 | JetElements For Elementor [jet-elements] < 2.6.11 | Improper Control of Generation of Code ('Code Injection') | Critical 9.0 | < 2.6.11 | 2.6.11 | 2023-08-03 | ✓ fixed in latest |
| — | JetElements For Elementor [jet-elements] < 2.7.3 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 5.4 | < 2.7.3 | 2.7.3 | 0000-00-00 | ✓ fixed in latest |
| — | JetElements For Elementor [jet-elements] < 2.9.1.2 | — | Unknown | < 2.9.1.2 | 2.9.1.2 | 0000-00-00 | ✓ fixed in latest |
How to fix it
Keep JetElements For Elementor updated — 2.29.20 is the latest version on wordpress.org, and each CVE above lists the exact release that fixed it ("Fixed in").
This is the plugin's full known vulnerability history, not a scan of any specific installation — run a free scan of your own site to check your exact installed version.
Safer / more established alternatives
- LiteSpeed Cache — 7000000+ active installs — 96/100 (2769) — max PHP 8.4
- WP Super Cache — 1000000+ active installs — 86/100 (1345) — max PHP 8.4
- WP Fastest Cache – WordPress Cache Plugin — 1000000+ active installs — 98/100 (4224) — max PHP 8.4
- WP-Optimize – Cache, Compress images, Minify & Clean database to boost page speed & performance — 1000000+ active installs — 96/100 (2607) — max PHP 8.4
- W3 Total Cache — 900000+ active installs — 88/100 (5420)
Check your own WordPress site
Run a free passive scan now, or create a free account and install the WP Clinic plugin for a deep scan of your whole hosting account and AI-assisted repair.