Responsive Lightbox & Gallery <= 2.5.2 - Unauthenticated Stored Cross-Site Scripting
Responsive Lightbox & Gallery
Minimum safe version
2.7.2
Update to 2.7.2 or later to address 18 fixable vulnerabilities
Responsive Lightbox & Gallery <= 2.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
Responsive Lightbox & Gallery <= 2.7.1 - Authenticated (Author+) Server-Side Request Forgery via Remote Library Image Upload
CVE-2025-15386
CVE-2025-12359
CVE-2025-60452
Responsive Lightbox & Gallery <= 2.5.0 - Authenticated (Contributor+) Stored Cross-Site Scripting
Multiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Featherlight.js JavaScript Library
Multiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via FancyBox JavaScript Library
CVE-2024-49282
CVE-2024-43924
CVE-2024-6870
CVE-2024-31252
CVE-2023-49174
PrettyPhoto Library (Multiple Plugins and Themes) <= 3.1.4 - DOM Cross-Site Scripting
Responsive Lightbox & Gallery <= 2.4.1 - Authenticated (Administrator+) Stored Cross-Site Scripting
WordPress Responsive Lightbox Plugin <= 1.4.11 - XSS
CVE-2017-2243