Exposure of Responsive Lightbox & Gallery
Photo galleries, WordPress plugins13
exposure score
17,779
sites use
0
exploited
0
critical
Vexday analysis
Com 10 CVEs catalogadas e nenhuma em exploração ativa confirmada pelo CISA KEV, o Responsive Lightbox & Gallery apresenta taxa de exploração abaixo da média geral do catálogo. A ausência de falhas críticas e de novas vulnerabilidades nos últimos 90 dias sugere um perfil de risco relativamente estável no momento. O tipo de falha mais recorrente é CWE-79 (Cross-Site Scripting), o que indica atenção persistente com validação e sanitização de entradas em contextos de renderização HTML. A CVE mais relevante no momento, CVE-2025-3742, apresenta EPSS de 0,0048, indicando baixa probabilidade estimada de exploração iminente, embora deva ser monitorada por equipes que mantêm essa tecnologia em produção.
CVEs
10 resultsCVE-2025-3742MEDIUMResponsive Lightbox & Gallery < 2.5.1 - Contributor+ Stored XSSEPSS 0.5%CVE-2024-5020MEDIUMMultiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via FancyBox JavaScript LibraryEPSS 0.4%CVE-2023-49174MEDIUMWordPress Responsive Lightbox Plugin <= 2.4.5 is vulnerable to Cross Site Scripting (XSS)EPSS 0.4%CVE-2024-6870MEDIUMResponsive Lightbox & Gallery <= 2.4.7 - Authenticated (Author+) Stored Cross-Site Scripting via File UploadEPSS 0.3%CVE-2024-5667MEDIUMMultiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Featherlight.js JavaScript LibraryEPSS 0.3%CVE-2025-15386HIGHResponsive Lightbox & Gallery < 2.6.1 - Unauthenticated Stored XSSEPSS 0.3%CVE-2025-12359MEDIUMResponsive Lightbox & Gallery <= 2.5.3 - Authenticated (Author+) Server-Side Request ForgeryEPSS 0.2%CVE-2026-2479MEDIUMResponsive Lightbox & Gallery <= 2.7.1 - Authenticated (Author+) Server-Side Request Forgery via Remote Library Image UploadEPSS 0.2%CVE-2025-9710MEDIUMResponsive Lightbox & Gallery < 2.5.3 - Unauthenticated Stored-XSS via CommentsEPSS 0.2%CVE-2025-5093MEDIUMResponsive Lightbox & Gallery < 2.5.2 - Contributor+ Stored XSSEPSS 0.2%