AM LottiePlayer

Vulnerabilities 2Slug am-lottieplayerLatest version 3.6.3WordPress.org →

Minimum safe version

3.5.4

Update to 3.5.4 or later to address 1 fixable vulnerability

Latest available3.6.3 ⚠ 1 vulnerability has no fix
N/A Unfixed
2026-04-07≤ 3.6.0

AM LottiePlayer <= 3.6.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG

Medium 6.4
2025-05-01< 3.5.4

WordPress AM LottiePlayer Plugin <= 3.5.3 is vulnerable to Cross Site Scripting (XSS)