Complete Guide to CVE-2025-46494 - WordPress WidgetKit Pro plugin <= 1.13.1 - reflected cross site scripting (xss) ...

Complete Guide to CVE-2025-46494 - WordPress WidgetKit Pro plugin <= 1.13.1 - reflected cross site scripting (xss) ...

CVE ID : CVE-2025-46494 Published : Jan. 7, 2026, 1:15 p.m. | 1 hour, 1 minute ago Description : Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themesgrove WidgetKit Pro allows Reflected XSS.This issue affects WidgetKit Pro: from n/a through 1.13.1. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Jan. 7, 2026
Impact: XSS

Source: Telegram CVE Monitor