WordPress Elespare
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in WordPress Elespare.
By the Year
In 2026 there have been 0 vulnerabilities in WordPress Elespare. Elespare did not have any published security vulnerabilities last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 0 | 0.00 |
| 2024 | 1 | 4.30 |
It may take a day or so for new Elespare vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent WordPress Elespare Security Vulnerabilities
WP Plugin Elespare <=2.1.2 Auth Post Creation Loophole
CVE-2024-0900
4.3 - Medium
- April 23, 2024
The Elespare Build Your Blog, News & Magazine Websites with Expert-Designed Template Kits. One Click Import: No Coding Skills Required! plugin for WordPress is vulnerable to unauthorized post creation due to a missing capability check on the elespare_create_post() function hooked via AJAX in all versions up to, and including, 2.1.2. This makes it possible for authenticated attackers, with subscriber-level access and above, to create arbitrary posts.
AuthZ
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for WordPress Elespare or by WordPress? Click the Watch button to subscribe.