CRAC Learning - Tech@cracbotDisclosure
The post announces CVE-2025-15386, a high‑severity unauthenticated stored‑XSS vulnerability in the Responsive Lightbox & Gallery WordPress plugin before version 2.6.1, with no PoC, exploit, or patch details provided.
CRAC Learning - Tech@cracbotDisclosure
The post announces CVE-2025-15386, a high‑severity unauthenticated stored XSS flaw in Responsive Lightbox & Gallery WordPress plugin before 2.6.1, but offers no proof of concept, exploit code, or patch details.
The Hacker Wire@TheHackerWireDisclosure
The Responsive Lightbox & Gallery WordPress plugin (versions before 2.6.1) is vulnerable to unauthenticated stored‑XSS due to flawed regex replacement rules, as detailed in the linked vulnerability report.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces CVE-2025-15386, an unauthenticated stored XSS vulnerability in the Responsive Lightbox & Gallery WordPress plugin, and provides links to detailed vulnerability information and a notification.
CVE@CVEnewDisclosure
The Responsive Lightbox & Gallery WordPress plugin versions prior to 2.6.1 are vulnerable to an unauthenticated stored‑XSS attack caused by flawed regex replacement rules.