CVE-2025-3745 Information
Jul 01, 2025
cve
Description
The WP Lightbox 2 WordPress plugin before 3.0.6.8 does not correctly sanitize the value of the title attribute of links before using them which may allow malicious users to conduct XSS attacks.
Reference
https://wpscan.com/vulnerability/1b50f686-c2e0-4963-95c8-b27137dcc059/
Related CNNVD
CNNVD-202506-3730 (Published: 2025-06-30)
Share on: