PLUGIN SECURITY

Is JetElements For Elementor safe?

Turns on site high speed to be attractive for people and search engines.

What this plugin does

  • Slug: jet-elements
  • Author: Seraphinite Solutions
  • 50000+ active installs
  • 96/100 rating (475 reviews on wordpress.org)
  • 898575 all-time downloads
  • On WordPress.org since 2021-05-29

cacheOptimizepagespeedperformancespeed up

Maintenance status

  • Latest known version: 2.29.20
  • Last updated: 2026-09-03 7:41am GMT
  • Tested up to WordPress: 7.1
  • Requires PHP: 7.1+

Known vulnerabilities

15 known CVEs on file for JetElements For Elementor.

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-24958 JetElements For Elementor [jet-elements] < 2.7.12.3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 6.5 < 2.7.12.3 2.7.12.3 2025-12-30 ✓ fixed in latest
CVE-2025-64355 JetElements For Elementor [jet-elements] < 2.7.12.1 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Unknown < 2.7.12.1 2.7.12.1 2025-11-06 ✓ fixed in latest
CVE-2025-55714 JetElements For Elementor [jet-elements] < 2.7.9.1 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 6.5 < 2.7.9.1 2.7.9.1 2025-08-14 ✓ fixed in latest
CVE-2025-49939 JetElements For Elementor [jet-elements] < 2.7.8.1 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 6.5 < 2.7.8.1 2.7.8.1 2025-08-03 ✓ fixed in latest
CVE-2025-53982 JetElements For Elementor [jet-elements] < 2.7.7.1 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 6.5 < 2.7.7.1 2.7.7.1 2025-07-16 ✓ fixed in latest
CVE-2025-53983 JetElements For Elementor [jet-elements] < 2.7.7.1 Insertion of Sensitive Information Into Sent Data Medium 6.5 < 2.7.7.1 2.7.7.1 2025-07-16 ✓ fixed in latest
CVE-2025-39448 JetElements For Elementor [jet-elements] < 2.7.4.2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 6.5 < 2.7.4.2 2.7.4.2 2025-04-17 ✓ fixed in latest
CVE-2025-39447 JetElements For Elementor [jet-elements] < 2.7.4.2 Missing Authorization High 7.5 < 2.7.4.2 2.7.4.2 2025-04-17 ✓ fixed in latest
+ 9 more known vulnerabilities
CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-7144 JetElements For Elementor [jet-elements] < 2.6.20.1 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 5.4 < 2.6.20.1 2.6.20.1 2024-08-15 ✓ fixed in latest
CVE-2024-7145 JetElements For Elementor [jet-elements] < 2.6.20.1 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') High 8.8 < 2.6.20.1 2.6.20.1 2024-08-15 ✓ fixed in latest
CVE-2023-48760 JetElements For Elementor [jet-elements] < 2.6.13.1 Missing Authorization High 8.2 < 2.6.13.1 2.6.13.1 2023-11-28 ✓ fixed in latest
CVE-2023-48761 JetElements For Elementor [jet-elements] < 2.6.13.1 Missing Authorization Medium 6.3 < 2.6.13.1 2.6.13.1 2023-11-28 ✓ fixed in latest
CVE-2023-48762 JetElements For Elementor [jet-elements] < 2.6.13.1 Cross-Site Request Forgery (CSRF) Medium 6.3 < 2.6.13.1 2.6.13.1 2023-11-28 ✓ fixed in latest
CVE-2023-48759 JetElements For Elementor [jet-elements] < 2.6.13.1 Missing Authorization High 7.5 < 2.6.13.1 2.6.13.1 2023-11-28 ✓ fixed in latest
CVE-2023-39157 JetElements For Elementor [jet-elements] < 2.6.11 Improper Control of Generation of Code ('Code Injection') Critical 9.0 < 2.6.11 2.6.11 2023-08-03 ✓ fixed in latest
JetElements For Elementor [jet-elements] < 2.7.3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 5.4 < 2.7.3 2.7.3 0000-00-00 ✓ fixed in latest
JetElements For Elementor [jet-elements] < 2.9.1.2 Unknown < 2.9.1.2 2.9.1.2 0000-00-00 ✓ fixed in latest

How to fix it

Keep JetElements For Elementor updated — 2.29.20 is the latest version on wordpress.org, and each CVE above lists the exact release that fixed it ("Fixed in").

This is the plugin's full known vulnerability history, not a scan of any specific installation — run a free scan of your own site to check your exact installed version.

Safer / more established alternatives

Check your own WordPress site

Run a free passive scan now, or create a free account and install the WP Clinic plugin for a deep scan of your whole hosting account and AI-assisted repair.