WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Themesflat Addons For Elementor

Themesflat Addons For Elementor plugin you install after Elementor!. Themesflat addon focuses on support for the author build Template Kits

13Reported vulnerabilities
9.8Highest CVSS score
2.3.3Latest version
40,000+Active installs

What to do now

Update Themesflat Addons For Elementor to 2.3.3 or later. 13 of these have a fixed version available. Updating resolves them.

Plugin last updated: March 13, 2026 / Tested up to WordPress: 6.9.7 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2023-37390 Critical 9.8 0.8% 2.0.0 and earlier 2.0.1 August 7, 2023
CVE-2025-3275 Medium 6.4 0.3% 0 to 2.2.5 (inclusive) 2.2.6 April 19, 2025
CVE-2025-31567 Medium 6.4 0.3% 2.3.1 and earlier 2.3.2 March 31, 2025
CVE-2024-53796 Medium 6.4 0.3% 2.2.2 and earlier 2.2.3 December 2, 2024
CVE-2024-49310 Medium 6.4 0.3% 2.2.1 and earlier 2.2.2 October 15, 2024
CVE-2026-39500 Medium 6.4 0.2% 2.3.2 and earlier 2.3.3 March 23, 2026
CVE-2024-12205 Medium 5.4 0.3% 2.2.4 and earlier 2.2.5 January 8, 2025
CVE-2024-8515 Medium 5.4 0.5% 2.2.1 and earlier 2.2.2 September 25, 2024
CVE-2024-4459 Medium 5.4 0.3% Before 2.1.3 2.1.3 June 6, 2024
CVE-2024-4458 Medium 5.4 0.3% Before 2.1.3 2.1.3 June 6, 2024
CVE-2024-4212 Medium 5.4 0.4% Before 2.1.3 2.1.3 June 6, 2024
CVE-2024-2922 Medium 5.4 0.3% 2.1.3 and earlier 2.1.3 June 6, 2024
CVE-2024-8516 Medium 4.3 0.4% 2.2.1 and earlier 2.2.2 September 25, 2024

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.