CVE-2025-46259

WordPress The Plus Addons for Elementor - Pro Plugin < 6.3.7 - Broken Access Control vulnerability

Missing Authorization vulnerability in POSIMYTH Innovation The Plus Addons for Elementor Pro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects The Plus Addons for Elementor Pro: from n/a before 6.3.7.


We have discovered 2,205 live websites that are affected by CVE-2025-46259.

Run a Free Instant Scan




Affected Software

Product  The Plus Addons for Elementor Pro
Category Wordpress Plugins
Vulnerable Domains2,205 live websites (100% of The Plus Addons for Elementor Pro install base)
Vulnerable Versions
  • from 0 before 6.3.7
Vulnerable Versions Count80 versions ( 100% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jul 1, 2025
  • Updated - Jul 1, 2025

Credits

  • Rafie Muhammad (Patchstack) (finder)

Website Distribution by Country

Number of websites using CVE-2025-46259
United States789 websites



Germany255 websites
France143 websites
Russia88 websites
GB84 websites
Cyprus72 websites
Italy49 websites
Iran49 websites
Spain44 websites
Netherlands43 websites

Website Distribution by TLD

Number of websites using CVE-2025-46259
.com918 websites
.org90 websites
.de82 websites
.ru69 websites
.com.au69 websites
.fr65 websites
.co.uk63 websites
.com.br58 websites
.it51 websites
.nl39 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2025-46259

Top websites that are affected by CVE-2025-46259. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*****************.info Bulgaria**,***
****.com United States**,***
****.org United States**,***
***********.**.gr Germany**,***
*****************.***.sg Singapore***,***
************.com United States***,***
********.com GB***,***
***.***.ng Nigeria***,***
********************.fr France***,***
**********.org United States***,***
See full domain list

FAQ

CVE-2025-46259 is Missing Authorization in The Plus Addons for Elementor Pro
A total of 2,205 websites have been identified as vulnerable to CVE-2025-46259, based on global website indexing conducted by WebTechSurvey.
The The Plus Addons for Elementor Pro is affected by the CVE-2025-46259 vulnerability.
The Plus Addons for Elementor Pro versions up to 6.3.7 are vulnerable to CVE-2025-46259.
CVE-2025-46259 is resolved in version 6.3.7 of The Plus Addons for Elementor Pro.