
CVE-2026-1268 The Dynamic Widget Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the widget content field in the Gutenberg editor sidebar in all version… https://www.cve.org/CVERecord?id=CVE-2026-1268
Post summary
The Dynamic Widget Content plugin for WordPress is reported to have a stored XSS vulnerability. No exploit evidence, patch, or PoC is provided.
