The Enhanced Text Widget plugin for WordPress has a security vulnerability in versions up to and including 1.5.7. If someone with subscriber-level access or higher is able to gain access, they can use a certain function without permission. This can lead to unauthorized access of the function.