A vulnerability was found in kasparsd Widget Context Plugin up to 1.3.3 on WordPress. It has been classified as problematic . Affected by this vulnerability is the function save_widget_context_settings of the file /wp-admin/widgets.php . This manipulation causes cross-site request forgery. This vulnerability is tracked as CVE-2026-7615 . The attack is possible to be carried out remotely. No exploit exists. Upgrading the affected component is recommended.