cleantalk
Vulnerabilities and Security Researches

Widget Logic Visual, CVE-2025-68842

CVE, Research URL

CVE-2025-68842

Application

Widget Logic Visual

Published on
Feb 20, 2026
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in totalbounty Widget Logic Visual widget-logic-visual allows Reflected XSS.This issue affects Widget Logic Visual: from n/a through <= 1.52.
Affected versions
max 1.52.
Status
vulnerable