Code Injection Vulnerability in Widget Wrangler by Jonathan Daggerhart
CVE-2026-25447
9.1CRITICAL
What is CVE-2026-25447?
The Widget Wrangler plugin by Jonathan Daggerhart contains a Code Injection vulnerability that allows unauthorized users to execute arbitrary code. This security issue affects all versions of Widget Wrangler up to and including 2.3.9, potentially exposing websites to severe risks, including remote code execution. It highlights the importance of using the latest software versions to safeguard against such vulnerabilities.
Affected Version(s)
Widget Wrangler 0 <= 2.3.9