Security Advisory

CVE-2025-49029

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-07-01 13:27:47
Last updated 2026-04-28 16:12:57
Assigner Patchstack
CVSS score 9.1
State PUBLISHED

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in bitto.kazi Custom Login And Signup Widget custom-login-and-signup-widget allows Code Injection.This issue affects Custom Login And Signup Widget: from n/a through <= 1.0.