CVE-2025-13535 | kingaddons King Addons for Elementor Plugin up to 51.1.53 on WordPress Elementor Widget esc_attr/esc_url cross site scripting (EUVD-2025-209162)
A vulnerability identified as problematic has been detected in kingaddons King Addons for Elementor Plugin up to 51.1.53 on WordPress. Affected by this issue is the function esc_attr/esc_url of the component Elementor Widget. This manipulation causes cross site scripting.
This vulnerability is registered as CVE-2025-13535. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.