Security Advisory
CVE-2025-49074
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerability in Abu Huraira Bin Aman WidgetKit widgetkit-for-elementor allows Stored XSS.This issue affects WidgetKit: from n/a through <= 2.5.4.