Colorlib / Fancybox
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-3662 | FancyBox for WordPress < 3.3.6 - Unauthenticated Stored XSS | MEDIUM | 6.1 | Jun 3, 2025 |
| CVE-2024-0662 | The FancyBox for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions 3.0.2 to 3.3.3 due to insufficient… | MEDIUM | 4.8 | Apr 9, 2024 |
| CVE-2015-1494 | The FancyBox for WordPress plugin before 3.0.3 for WordPress does not properly restrict access, which allows remote attackers to conduct cross-site scripting (… | MEDIUM | 4.3 | Feb 17, 2015 |
Showing 1 to 3 of 3 CVEs