{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-14T18:09:26.732","vulnerabilities":[{"cve":{"id":"CVE-2025-39590","sourceIdentifier":"audit@patchstack.com","published":"2025-04-16T13:15:51.673","lastModified":"2026-04-01T17:23:24.117","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lite allows Stored XSS.This issue affects Essential Addons for Elementor: from n\/a through <= 6.1.9."},{"lang":"es","value":"La vulnerabilidad de neutralización incorrecta de la entrada durante la generación de páginas web ('Cross-site Scripting') en WPDeveloper Essential Addons for Elementor permite XSS almacenado. Este problema afecta a los complementos esenciales para Elementor desde la versión n\/d hasta la 6.1.9."}],"metrics":{},"weaknesses":[{"source":"audit@patchstack.com","type":"Secondary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wpdeveloper:essential_addons_for_elementor:*:*:*:*:lite:wordpress:*:*","versionEndExcluding":"6.1.10","matchCriteriaId":"0826C71D-4AC2-4208-9DCA-43D1D771D187"}]}]}],"references":[{"url":"https:\/\/patchstack.com\/database\/Wordpress\/Plugin\/essential-addons-for-elementor-lite\/vulnerability\/wordpress-essential-addons-for-elementor-6-1-9-cross-site-scripting-xss-vulnerability?_s_id=cve","source":"audit@patchstack.com","tags":["Third Party Advisory"]}]}}]}