The “JetWidgets For Elementor” WordPress Plugin before 1.0.9 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
CPE | Name | Operator | Version |
---|---|---|---|
jetwidgets_for_elementor | lt | 1.0.9 |