The a3 Lazy Load plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.7.6 This is due to a regex bug in the _filter_videos() method that breaks HTML attribute quoting when processing crafted
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.