WP Lightbox 2, CVE-2025-3745
- CVE, Research URL
- Home page URL
- Application
- Published on
- Jun 30, 2025
- Research Description
- The WP Lightbox 2 WordPress plugin before 3.0.6.8 does not correctly sanitize the value of the title attribute of links before using them, which may allow malicious users to conduct XSS attacks.
- Affected versions
-
Min -, max 3.0.6.8.
- Status
-
vulnerable
Previous vulnerability researches |
---|
PW WooCommerce On Sale! (CVE-2025-49888) , Jul 12, 2025 |