N/A Unfixed
2026-04-07≤ 3.6.0
AM LottiePlayer <= 3.6.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG
Minimum safe version
3.5.4
Update to 3.5.4 or later to address 1 fixable vulnerability
AM LottiePlayer <= 3.6.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG
WordPress AM LottiePlayer Plugin <= 3.5.3 is vulnerable to Cross Site Scripting (XSS)