A vulnerability, which was classified as problematic, was found in Widget Options Extended Plugin up to 5.2.1 on WordPress. Impacted is the function
do_sidebar
. The manipulation results in cross site scripting.
This vulnerability is reported as CVE-2025-8902. The attack can be launched remotely. No exploit exists.