Known Vulnerabilities for Widgets by Yahoo
Listed below are 1 of the newest known vulnerabilities associated with "Widgets" by "Yahoo".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-43940 json | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.7.16, the runWid... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-43459 json | In the Linux kernel, the following vulnerability has been resolved: ASoC: soc-core: flush delayed work before removing DAIs ... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-24390 json | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Qant... | Not Provided | 2026-01-22 | 2026-04-28 |
| CVE-2026-23928 json | The Item history widget (in Zabbix 7.0+) or the Plain text widget (in Zabbix 6.0) can execute injected JavaScript when HTML d... | Not Provided | 2026-05-06 | 2026-05-06 |
| CVE-2026-6916 json | The Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress plugin for WordPress is vulner... | Not Provided | 2026-05-02 | 2026-05-04 |
| CVE-2026-5742 json | The UsersWP plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to and including 1.2.60. This is... | Not Provided | 2026-04-09 | 2026-04-09 |
| CVE-2026-5425 json | The Widgets for Social Photo Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'feed_data' param... | Not Provided | 2026-04-04 | 2026-04-08 |
| CVE-2026-4790 json | The Premium Addons for Elementor – Powerful Elementor Templates & Widgets plugin for WordPress is vulnerable to Stored Cros... | Not Provided | 2026-05-02 | 2026-05-04 |
| CVE-2026-4341 json | The Prime Slider – Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'follow_u... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-4024 json | The Royal Addons for Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capab... | Not Provided | 2026-05-02 | 2026-05-04 |