
CVE-2026-1397 The PQ Addons – Creative Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widget attributes in all versions up to, and including,… https://www.cve.org/CVERecord?id=CVE-2026-1397
Post summary
The PQ Addons – Creative Elementor Widgets WordPress plugin is identified as having a stored XSS vulnerability through widget attributes.
