Medium 6.4
2025-12-13< 1.0.21
JetWidgets For Elementor <= 1.0.20 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Comparison and Subscribe Widgets
Minimum safe version
1.0.21
Update to 1.0.21 or later to address 9 fixable vulnerabilities
JetWidgets For Elementor <= 1.0.20 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Comparison and Subscribe Widgets
CVE-2024-10323
CVE-2024-4626
CVE-2024-2507
CVE-2024-2138
CVE-2023-0034
CVE-2023-0086
WordPress JetWidgets For Elementor plugin <= 1.0.8 - Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities
CVE-2021-24268