PT-2025-35023 · WordPress · Wp Smart Widgets Better Post & Filter Widgets For Elementor

Abu Hurayra

·

Published

2025-08-28

·

Updated

2025-08-28

·

CVE-2025-48354

CVSS v3.1
6.5
VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L

Name of the Vulnerable Software and Affected Versions:

WP Smart Widgets Better Post & Filter Widgets for Elementor versions through 1.6.0

Description:

The software contains an Improper Neutralization of Input During Web Page Generation issue, which allows for Stored Cross-site Scripting (XSS).

Recommendations:

Update WP Smart Widgets Better Post & Filter Widgets for Elementor to a version later than 1.6.0.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-48354

Affected Products

Wp Smart Widgets Better Post & Filter Widgets For Elementor