Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LambertGroup Multimedia Playlist Slider Addon for WPBakery Page Builder allows Reflected XSS. This issue affects Multimedia Playlist Slider Addon for WPBakery Page Builder: from n/a through 2.1.
History

Sat, 16 Aug 2025 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Lambertgroup
Lambertgroup multimedia Playlist Slider Addon For Wpbakery Page Builder
Wordpress
Wordpress wordpress
Wpbakery
Wpbakery page Builder
Wpbakery wpbakery Page Builder
Vendors & Products Lambertgroup
Lambertgroup multimedia Playlist Slider Addon For Wpbakery Page Builder
Wordpress
Wordpress wordpress
Wpbakery
Wpbakery page Builder
Wpbakery wpbakery Page Builder

Thu, 14 Aug 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 14 Aug 2025 10:45:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LambertGroup Multimedia Playlist Slider Addon for WPBakery Page Builder allows Reflected XSS. This issue affects Multimedia Playlist Slider Addon for WPBakery Page Builder: from n/a through 2.1.
Title WordPress Multimedia Playlist Slider Addon for WPBakery Page Builder <= 2.1 - Cross Site Scripting (XSS) Vulnerability
Weaknesses CWE-79
References
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published: 2025-08-14T10:34:30.974Z

Updated: 2025-08-14T19:43:06.116Z

Reserved: 2025-03-24T13:00:55.839Z

Link: CVE-2025-30626

cve-icon Vulnrichment

Updated: 2025-08-14T19:42:56.061Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-08-14T11:15:32.367

Modified: 2025-08-14T13:11:53.633

Link: CVE-2025-30626

cve-icon Redhat

No data.