Vulnerabilities > Colorlib > Fancybox > 3.2.3

DATE CVE VULNERABILITY TITLE RISK
2024-04-09 CVE-2024-0662 Cross-site Scripting vulnerability in Colorlib Fancybox
The FancyBox for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions 3.0.2 to 3.3.3 due to insufficient input sanitization and output escaping.
network
low complexity
colorlib CWE-79
4.8