cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forresponsive-lightbox2 responsive-lightbox2

Direction: ascending
Jun 07, 2024

Responsive Lightbox2 # CVE-2022-3987

CVE, Research URL

CVE-2022-3987

Application

Responsive Lightbox2

Date
Dec 19, 2022
Research Description
The Responsive Lightbox2 WordPress plugin before 1.0.4 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks
Affected versions
Min -, max -.
Status
vulnerable

Responsive Lightbox2 # 3a708e667647cfc7347348989e4ffa77f2b38c04

Application

Responsive Lightbox2

Date
Aug 17, 2020
Research Description
Responsive Lightbox2 [responsive-lightbox2] < 1.0.3 WordPress Responsive Lightbox2 plugin <= 1.0.2 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability Authenticated Stored Cross-Site Scripting (XSS) vulnerability found Melbin K Mathew in WordPress Responsive Lightbox2 plugin (versions <= 1.0.2).
Affected versions
Min -, max -.
Status
vulnerable