PatchSiren

LambertGroup CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH LambertGroup CVE published 2026-01-08

CVE-2025-27004

A Cross-site Scripting (XSS) vulnerability exists in the Famous - Responsive Image And Video Grid Gallery WordPress Plugin. This issue allows for Reflected XSS and affects the plugin from version n/a through 1.4. The vulnerability can be exploited through user-supplied input, potentially allowing attackers to inject malicious scripts. Defenders should assess exposure and prioritize patching or mitigation [truncated]

HIGH LambertGroup CVE published 2026-01-08

CVE-2025-27002

A Cross-site Scripting vulnerability in CountDown With Image or Video Background plugin for WordPress allows Reflected XSS. This issue affects CountDown With Image or Video Background: from n/a through <= 1.5. The vulnerability could allow an attacker to inject malicious scripts, potentially leading to unauthorized actions within the context of an authenticated user's session. Defenders should prioritize [truncated]